Persona Operations
The complete operator guide for the 318-role AI persona
workforce, its mailboxes, and the /agents, /agent,
and /workforce-stats commands.
1. The persona workforce (318 roles)
| Division | Name | Roles |
|---|---|---|
| D1 | Office of the CEO | 7 |
| D2 | Finance | 27 |
| D3 | Legal & Compliance | 15 |
| D4 | Commercial | 24 |
| D5 | Technology | 79 |
| D6 | GRC + Risk + Audit | 58 |
| D7 | Operations | 14 |
| D8 | Strategy & Corp Dev | 18 |
| D9 | Marketing & Brand | 57 |
| D10 | ByteLens Lab | 19 |
Levels: 9 C-Suite, 58 Director, 4 M5, 10 IC6, 76 IC5, 109 IC4, 21 IC3, 31 IC2. Locales: en_US 222, ar_SA-romanized 96 (0 unknown).
Runtime: governance 110, defense 99, engineering 18, enrichment 14, investigation 14, data 13, governance-2 8, detection 8.
Identity systems
- Vault
ciso/data/personas/<id>/profile - Eramba
users+persona_registry - Keycloak (SSO) user
persona-<id>on sso.darkcoders.com - Mail
persona-<id>@darkcoders.ioon mail.darkcoders.io
Governance
- NICE v2.2.0 42-role catalog imported; C-SCRM gap closed (SCM-*).
- Cyberspace Effects/Intelligence follow the DoD DCWF catalog (CE-*/CI-*); live execution gated by MAL-G6/G8.
- ByteLens Lab (D10) mirrors MAL-03 roles as assistants only.
- Register: 318 roles, 0 drift, verified daily.
2. Persona mailboxes
Each persona owns persona-<id>@darkcoders.io. The agent
loop triages unseen mail and replies only when warranted. Manual
read-only auditing guide:
Persona Mailbox Auditing.
3. /workforce-stats
Live register summary in the master bot:
- By division (D1–D10, names, counts)
- By level (C-Suite, Director, M5, IC6–IC2 with bars)
- By locale / gender (percentages;
?means unhydrated) - Agent-loop ticks per division from Redis
Zero ? entries means the identity snapshot is complete.
4. /agents — active NICE agents
/agents (alias /list_agents) shows:
- Policy loaded — 79 entries: 41 NICE + 8 SPEC + 11 DCWF + 19 ByteLens persona overrides.
- Active count — agents running now (spawn on demand; none resident).
5. /agent — spawn on demand
/agent <role-id> <task description> /spawn PD-WRL-006 hunt for KEV CVE-2024-12345 in our fleet /spawn OG-WRL-008 review our PDPL DPIA gaps /spawn DD-WRL-001 critique our microservices auth design
| Cost class | Meaning |
|---|---|
| small | inline Zen call (~1s, no infra) |
| medium | systemd worker (cgroup-isolated) |
| large | dedicated droplet (Telegram approval) |
Dangerous roles require Telegram approval before a large spawn.
6. Command surface
| Command | Alias | Purpose |
|---|---|---|
| /workforce-stats | — | register + ticks |
| /agents | /list_agents | policy + active agents |
| /agent | /spawn | spawn NICE/DCWF/BL agent |
| /mailbox | /team-mail | read-only persona mail |
Operator-only commands are restricted to the operator allowlist.
7. Daily self-healing
- Register parity + @darkcoders.io domain (0 drift).
- Census 132 tests, BL-AT 12, persona register 19.
- Cross-system audit (Vault/Eramba/Keycloak/postfix/dovecot/Maildir).
- Auditor credential rotation state (90/60/7).
- Spawn-policy key integrity + alias registry.
8. Related controls
- Telegram Bot & Channel Governance suite
- ByteLens unified plan (38_Unified_Programme_Plan/bytelens)
- Contradiction register CON-011, CON-012
- Utility bot @oxfares_forge_cloud_bot (token in Vault)