High-Level Architecture (Legacy Index)

This page preserves the legacy 07_ numbering so older links keep resolving. It is a pointer page only — the canonical high-level architecture now lives in two documents:

Plugin extensibility (uniform runtime plugin model)

Controlled conversational interface

AI code guard

Audit evidence packs

Tenancy model

Stella Ops supports multiple logical tenants under one operator’s trust boundary: environments, business units, or other scopes that share the same security team, on-call authority, and incident-response owner. Cross-tenant adversarial workloads and shared-tenancy SaaS hosting are out of scope for the current architecture; see ADR-005. For token-selection mechanics within this posture, see ADR-002.