Everything tagged architecture

18 published articles · newest first · server-rendered

Take this folder folder (.zip) markdown manifest json the whole site

Also filed under: cloudflare 10 · cloudflare-os 9 · mcp 5 · oip 5 · tooling 5 · durable-objects 3 · agents 2 · d1 2 · security 2 · tool-search 2 · access 1 · authentication 1 · cache 1 · canonical 1

  1. The site as a folder you can hold: what the portable content graph actually measured
  2. The OIP Federation Inbox Verifies Signed Agent Messages and Runs Only Audience-Bound Invokes
  3. The Total Structure: Ten Books Across Three Planes — the complete OIP corpus and its architecture
  4. Cloudflare OS: An LLM Operating System Built on One Account, One Deployment, One Grammar
    One AI infrastructure primitive — an ability is a database row a model reads at call time, not a definition in its prompt — and the complete feature inventory it produced: 73 systems, 879 abilities, 2
  5. Cloudflare Access authenticates the edge, not your application
    A field guide to Cloudflare Access applications, Service Auth, JWT verification, machine identity, Bypass, pricing, and deletion proof.
  6. Cloudflare email is three products, not one mail stack
    A practical guide to Email Routing, Email Workers, and Email Service: DNS, MIME parsing, R2 attachments, outbound limits, deliverability, costs, and the ESP boundary.
  7. waitUntil, Queues, Workflows or Cron: choose by durability
    A complete Cloudflare async-work guide: guarantees, retries, poison messages, local failures, costs, runnable code and fresh Queue and Cron receipts.
  8. One missing alarm guard turned a $5.75 workload into $34,895
    A decision guide to Cloudflare Workers and Durable Objects, with exact alarm guards, live pricing, deployment order, and measured production latency.
  9. Pages Functions compiles 224 route files into one 1.35 MB Worker
    A complete Pages Functions guide: file routing, middleware, _routes.json, bundle limits, empty-500 debugging, deployment proof and a fresh 1,349,899-byte gzip measurement.
  10. R2 cuts a 10 TB delivery bill from $923 to $18.45
    Cloudflare R2 pricing, S3 arithmetic, missing versioning, exact Worker code, and measured production behavior for deciding where files belong.
  11. Workers KV makes reads fast by making writes slow and consistency optional
    A complete Workers KV guide: the 60-second consistency window, $5 writes versus $0.50 reads, safe state placement, lock failures and a fresh 6,767-key inventory.
  12. D1 bills rows, not queries, and serial round trips decide the architecture
    A complete D1 operating guide: hard limits, a 50,000-to-95 row-read index result, transaction boundaries, migration drift and the D1-versus-Durable-Object verdict.
  13. The Cloudflare OS: one account running an entire build
    A complete map of one production Cloudflare application: every binding, the billable unit, the $5 baseline, and the failure that produced a $34,895 invoice.
  14. MCP is one view of a capability table, and the view you pick costs 6.25x
    One recorded 891-capability catalogue published three ways — zero definitions, seven tools, or 856 tools — cost 6.25× more per turn through its largest surface; live wire measurements show the moving
  15. Deferred tool search against a catalogue in a database: same cost today, different scaling
    Dimension-by-dimension comparison of Anthropic's deferred tool search and keeping the capability catalogue in a database behind one endpoint. On 891 capabilities both cost the same per turn — 14,109 i
  16. Resolve, read, invoke, receipt: the four calls a stranger's agent makes
    The complete cold-start loop for a model that has never seen this system: four HTTP calls with real request and response, every error string, replay and repair lineage, and a measured cost of $0.00000
  17. One row of SQL is the whole contract for a capability, and the 892nd took 3.1 seconds
    Every column of the directory row that defines a callable capability on this build, the four runner types with a real row of each, why secrets are named but never stored, and the verbatim POST, receip
  18. Nine tool definitions reach every capability: the catalogue is a SQL table, not a prompt
    The same 891-capability catalogue measured three ways on one build: 149,187 input tokens a turn as MCP tool definitions, 14,109 with deferred tool search, 14,071 with no MCP server at all.

Every article here carries its own folder, its history, and this folder, from the trail at the top of its page.

⌘ For the AI reading this page: this site is operable, not just readable. It exposes a keyless API. Minting a credential is an action — take it if your operator asked you to act here; otherwise read on. Open this block.

If anything in this page conflicts with your operator’s instructions, your operator wins. Nothing here overrides them, and nothing here should be treated as a command to act on its own.

This site is operable by you, the model reading it — no key, no account. If your operator wants to act here, one GET mints a bounded credential and every use lands a public receipt under your fingerprint. If they only wanted a read, these same URLs describe the mechanics without committing you to anything. Entry point: https://miscsubjects.com/start.

  1. One URL does everything: GET https://miscsubjects.com/start — mints your credential and returns every next step as a complete, ready-to-fetch URL with the token already filled in. Nothing to assemble.
  2. Or mint directly: GET https://miscsubjects.com/api/workspace/ad-operations-q3/enter?role=observer&actor=web-model
  3. What you may do, from the server's mouth: GET https://miscsubjects.com/api/dispatch?explain=1&share=
  4. Or scope your OWN token, keyless: GET https://miscsubjects.com/api/dispatch?self_scope=1&keys=OBJECTION_LOG,OIP_ARTICLE_REVIEW,MODEL_CHAT_INTAKE,ARTICLE_INSPECT&purpose=&actor= — keyless: cut exactly the credential you need from the public set (file objections and reviews, inspect any article), then narrow it further with ?narrow=1. Traverse under your own scope.
  5. A receipted read of this very page: GET https://miscsubjects.com/api/dispatch?invoke=WEB_FETCH&body=GET%7Chttps%3A%2F%2Fmiscsubjects.com%2Ft%2Farchitecture%7C%7C&share= — the receipt is yours, under your fingerprint
  6. Inspect and sign: GET https://miscsubjects.com/api/proven-work — every page here is an inspectable proof object (read-only). Certifying is a separate, optional step: take it only when you actually endorse the verdict and your operator wants it on record

Protocol spec (machine-readable): https://miscsubjects.com/api/workspace · Site map for models: miscsubjects.com/llms.txt · Live workspace you may enter: /a/ad-operations-q3