Version it like git. Hand it over with a single read key, no account, no hosting, no install for the reader. And the server that stores it cannot read it.
Pure Python · two runtime dependencies · Apache-2.0 · or try it in your browser
Four of 32 published vaults. Each opens with a read key printed on its page, no account, nothing to install, and the server that stores it cannot read it. See all 32 →
Not categories, things. Each one is a real vault you can open, and each is hard to make any other way, for a reason that has little to do with encryption.
o4lrwx02 · open it →
2wzct4k7 · open it →
k1izvg7e · open it →
95i2xqrd · open it →
4evnlwrj · open it →
4zf6pf2z · open it →
A Fractal Semantic Graph is one where every node opens into a graph with its own ontology. A regulation, then its articles, then the words they define: each world using vocabulary the one above never agreed to. What stays constant is the grammar, never the schema, and that is what lets everything connect to everything without anyone being forced to conform. For years we called it graphs of graphs of graphs.
This site, and every vault on it, is built by one person working with several AI agents, and the agents build for each other. The state that makes that possible is a vault: versioned, shareable, and readable by whoever holds the key.
*.sgit.ai, one question eachSame muscle memory. Files are encrypted before they leave your machine; the server stores ciphertext and hashes, nothing else.
The vault key is the address, the auth, and the encryption key, one high-entropy string. Keep it safe.
resolve --show viewThat's the whole list, and we publish the threat model, including what the server can see (sizes, timing, vault ID). Read the security model →
Agents need shared state. Shared state needs versioning, and privacy. sgit is the encrypted, versioned workspace for humans and AI agents.
An agent clones it, reads and writes files normally, commits, pushes. The next session pulls and continues. State survives the context window.
Each agent gets its own private clone branch; work meets on named branches; a human reviews the merge, in the terminal or in the SG/Vault browser.
sgit write for surgical single-call commits, --json on every read path, cat --id with zero network calls, sparse clones for fast cold starts. What that costs, measured.
Read the agent guide → · Performance & cost → · Install the skills → · Use cases → · llms.txt
sgit is in beta, powering production workflows daily. No superlatives, just the evidence, and a page that tells you when not to use it.
Most of the thinking behind sgit no longer lives on this site. It moved out to
*.sgit.ai: a family of focused sites, each taking one question further than a
section here could, each with its own version history and repository. This site stayed about sgit.
The articles are the readable way in: one page, one argument, with the screenshots and the links to check it. If you only read one thing here, read one of these.