BuildWithHQ
Canonical knowledge unit · goclaw

GoClaw secure context assembly

Before planning, GoClaw assembles a bounded context package from the Inbox source and permitted records, relationships, activity, conversations, files, calendar, knowledge, and secured RAG under one authorization envelope.

ID: BWHQ-GOCLAW-003Status: specifiedAuthority: highgoclawcontextragrecord-graphpermissions

GoClaw secure context assembly

Context assembly

GoClaw context is not a broad scrape of tenant data. It is assembled under the acting identity’s resolved permissions and may include the Inbox source, record graph, activity chain, conversations, files, calendar data, knowledge, and RAG results that are individually permitted.

AI rule

The model receives an already-permitted context set. Prompt instructions are not the security boundary.

Freshness

Context should carry the relevant Inbox ActivityVersion or equivalent freshness marker so later approval/execution can detect whether the business context changed after planning.

Machine-readable source: canonical Markdown. This HTML companion exists for human reading, search indexing, and AI retrieval.