Architect: start

Architect

The board running the infrastructure your repositories run on, and you still deciding what changes. What Architect is, how a change goes, what stays true, its words, and where to read on.

Architect is the part of the board that runs what your repositories run on: their Workers, databases, namespaces, buckets, queues, containers, routes, and custom domains. It came in 2.0.0, it runs on Cloudflare, and it’s off until you connect a provider. Until then the board makes no call for it.

It works the way the rest of the board does. What should exist is a file in the repository. Agents change it by pull request. The board works out the exact change, a plan, and the plan waits for you. You press Approve, and a workflow in the repository applies it, with a write token the board never holds. Then the board checks health, and rolls back by itself if the check fails.

#How a change goes

the file: what should exist     Cloudflare: what runs
staging.json                    (the read-only token)
            \                     /
             the board compares them
                       |
                       v
     a plan: what changes, what it costs,
     what else it touches, can it be undone
                       |
     the policy: it waits for you, or it
     fits bounds you approved once
                       |
               you press Approve
                       |
                       v
     the repository's apply workflow, with
     staging's write token, from a GitHub
     environment only the default branch uses
                       |
                       v
     the board checks health, and rolls
     back by itself if the check fails

Every step is on the board: the plan as it forms, your approval, the run, and the health check, on the environment’s page and in its audit trail. A plan that waits for you sends one push, so you can approve from your phone.

#Two lanes: code, and what it runs on

Architect doesn’t replace the deploy flow. They’re two lanes, and a repository can use either or both.

The deploy flowArchitect
What it changesThe code: a new version of a WorkerWhat the code runs on: a Worker’s settings and bindings, and the resources around it
Where it’s writtenThe code and its wrangler config.github/breakaway-infra/<environment>.json
How it goesMerging deploys staging; you press Promote and Roll backMerging plans; you press Approve, the board applies
Its buttonsPromote, Roll back, ReleaseApprove, Reject, Freeze

On a repository with both, staging and production are one pair of environments: their deploys, Promotes, and Roll backs show on the same pages as their plans. Architect and the deploy flow says how to set up an app and its infrastructure together.

#What stays true

#The words

Architect uses the same few words everywhere: on the board, in pushes, in the CLI, and here.

WordWhat it means
environmentA named place a repository runs: production, staging, or short-lived (one task’s own).
providerA platform you connect so the board can see what runs there. Cloudflare, in 2.0.
desired stateWhat should exist in one environment: its file in .github/breakaway-infra/.
changeWhat you edit on an environment’s page before it becomes a pull request and a plan.
planThe exact change the board would make to one environment: what changes, what it costs, what else it touches, and whether it can be undone.
approve, rejectYour answer to a plan that waits for you. Only you can, and only on the board.
applyWhat the board does with a plan you approved. It’s a status, never a button.
policyThe rules that decide which plans wait for you.
envelopeBounds you approve once on one environment, like “2 to 10 instances” or “3 restarts a day”.
signalOne thing the board heard about an environment: its health, a platform’s alert, or its cost.
incidentA task tagged +incident, opened when a signal crosses a rule.
driftWhat runs no longer matches its file.
break-glassA change you made by hand outside a plan, on purpose. The board records it and never undoes it.
freezeStop every plan on one environment until you unfreeze it.
observe onlyAn environment the board watches and never changes.

#Where it shows

#Read on

You want toRead
Go from nothing to your first approved planGet started with Architect
Know what it can run, change, and scaleWhat’s supported
Add an environment, or build one from nothingEnvironments
Write or read the files in .github/breakaway-infra/Describe it as code
Change what runs, from the board or by pull requestChange an environment
Read a plan, approve it, and follow it to appliedPlans and approvals
Decide which plans wait for youPolicy
Let the board scale and restart within boundsEnvelopes and scaling rules
Hear when something breaks, and work itSignals, incidents, and runbooks
See what it costs, and set budgetsCost and budgets
Copy a setup that worksPatterns
Set up the tokens, GitHub environments, and the apply workflowTokens, GitHub, and the apply workflow
Run an app’s deploys and its infrastructure togetherArchitect and the deploy flow
Know what agents may doAgents and infrastructure
Stop every change, or see who holds an environmentFreeze, gates, and locks
Change something by hand, and put it back in codeDrift, break-glass, and clean up
Fix what didn’t go through, or recover without the boardWhen it goes wrong