Product and operator docs live here. The Vigil repository keeps only the root README, domain vocabulary (CONTEXT.md), GitHub/release files, and markdown that the product loads at runtime (workflow definitions, agent skills, templates).
Product
- Architecture
- Agents
- Integrations
- Features
- API
- Detection engineering
- Chat-driven case management
- Chat case quick reference
- Backend tools
- Source evidence
- SLA usage
- SLA policy API
- SLA quick reference
Deploy
- Configuration
- Deployment guide
- Helm values
- Helm chart
- Helm secrets
- Production security
- State and secrets
- Kafka ingestion
- Sandbox
- Bifrost gateway
- Database init SQL
Develop
- Contributing to Vigil
- Releasing
- Release setup
- DEV_MODE
- CI/CD
- GitHub workflows
- Testing
- AI assistant notes
- LLM layer
- Vendor slices
- Splunk testing
- Postgres to Splunk export
- Default credentials init