<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Contributing on Agent Mesh</title><link>https://google.github.io/agentmesh/docs/contributing/</link><description>Recent content in Contributing on Agent Mesh</description><generator>Hugo</generator><language>en-us</language><atom:link href="https://google.github.io/agentmesh/docs/contributing/index.xml" rel="self" type="application/rss+xml"/><item><title>Testnets</title><link>https://google.github.io/agentmesh/docs/contributing/testnets/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://google.github.io/agentmesh/docs/contributing/testnets/</guid><description>&lt;p>The project runs two public meshes for its own testing and for anyone who
wants to try the software without deploying anything.&lt;/p>
&lt;table>
 &lt;thead>
 &lt;tr>
 &lt;th>&lt;/th>
 &lt;th>&lt;code>bananas.sam-mesh.dev&lt;/code>&lt;/th>
 &lt;th>&lt;code>hub.sam-mesh.dev&lt;/code>&lt;/th>
 &lt;/tr>
 &lt;/thead>
 &lt;tbody>
 &lt;tr>
 &lt;td>Built from&lt;/td>
 &lt;td>every push to &lt;code>main&lt;/code>&lt;/td>
 &lt;td>every &lt;code>v*&lt;/code> tag&lt;/td>
 &lt;/tr>
 &lt;tr>
 &lt;td>Image tag&lt;/td>
 &lt;td>the commit SHA&lt;/td>
 &lt;td>the release version&lt;/td>
 &lt;/tr>
 &lt;tr>
 &lt;td>Purpose&lt;/td>
 &lt;td>continuous integration of unreleased code&lt;/td>
 &lt;td>the latest release, for interoperability testing&lt;/td>
 &lt;/tr>
 &lt;/tbody>
&lt;/table>
&lt;p>Both are deployed by &lt;code>.github/workflows/deploy.yaml&lt;/code> to a GKE cluster from
the templates in &lt;code>.github/k8s/&lt;/code>. Each testnet has a control plane Deployment
on PostgreSQL, a router StatefulSet that announces
&lt;code>/dnsaddr/bootstrap.&amp;lt;env&amp;gt;.sam-mesh.dev&lt;/code> (a DNS-sync CronJob keeps the record
current), the console, and a few canary nodes that publish demo services:
the MCP &lt;code>everything&lt;/code> server, an OpenRouter proxy, and a vLLM instance when
one is running. Identity comes from a Dex instance at &lt;code>auth.sam-mesh.dev&lt;/code>
that accepts Google and GitHub logins, and from the cluster&amp;rsquo;s own issuer for
in-cluster workloads.&lt;/p></description></item><item><title>Security architecture</title><link>https://google.github.io/agentmesh/docs/contributing/security-architecture/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://google.github.io/agentmesh/docs/contributing/security-architecture/</guid><description>&lt;p>This document describes the security architecture and posture of Agent Mesh for
developers and security reviewers. It covers how Agent Mesh acts as an authority,
Policy Decision Point (PDP), and task-scoped credential layer across
environments, what problems it solves, what responsibilities remain with the
surrounding platform, how its cryptographic and policy mechanisms work across
&lt;code>agentmesh-control-plane&lt;/code>, &lt;code>agentmesh-node&lt;/code>, &lt;code>agentmesh-router&lt;/code>, and the native SDKs, and which
extensions are deferred on purpose.&lt;/p>
&lt;hr>
&lt;h2 id="1-current-security-posture-a-courier-network-for-tasks">1. Current security posture: a courier network for tasks&lt;/h2>
&lt;p>&lt;img src="../../../images/agent-mesh-courier.svg" alt="The Agent Mesh as a courier network">&lt;/p></description></item></channel></rss>