One acyclic Rust workspace, roughly 160K lines, depending on the Franken constellation and nothing else. Every layer points strictly downward, and unsafe is confined to audited leaf capsules under 300 lines, each sealed behind a safe façade and registered with the policy checker.
- Rust crates
- 104
- acyclic layers
- 7
- lines of Rust
- ~160K
- inline tests
- 1,300+
- CONTRACT.md contracts
- 52
- non-Franken runtime deps
- 0
The complete inventory, grouped by the seven strictly-acyclic layers. A layer may depend only on the layers beneath it: L6 Helm sees everything, L0 Substrate sees nothing but the machine. Each group is color-coded by its layer along the spectrum.
Helm
Orchestration, ledger & agent interface
fs-bisectPhysics-VCS bisect (addendum Proposal 10): git-bisect for a wrong number.
fs-checkerThe standalone evidence-package checker (addendum Proposal 12): an independently distributable verifier that re-verifies a package's completeness.
fs-frameFlagship 2 (plan 15.2): the seismic-minimal building frame - ground-structure layout LP with duality certificates, code-checked sizing.
fs-irFrankenScript, the system's one true interface: a typed, versioned IR with isomorphic s-expr + JSON syntaxes and structured errors that teach.
fs-ledgerThe Design Ledger on FrankenSQLite: content-addressed artifacts, event-sourced ops, lineage, tune cache, and time-travel / explain().
fs-marqueeThe P2 marquee demo: shape/topology optimization on a raw SDF with no mesh in the loop.
fs-packageMachine-checkable evidence packages (addendum Proposal 12): a content-addressed Merkle bundle of color-typed claims + provenance.
fs-planPer-operator error & cost models, the Error Ledger / Time Ledger attribution trees, and a plan-cost oracle rebuilt from tune records.
fs-recomputeA content-addressed Merkle DAG with per-node slack = tolerance − achieved error, for certified-skip incremental recomputation.
fs-reportAutomatic lab notebooks + semantic design diffs (fs-report): every study emits a deterministic, content-addressed.
fs-rooflineMachine-axis probing, kernel specs, the roofline registry, a measurement harness, and staleness checks.
fs-sessionSessions, capability tokens, an enforcing resource governor, idempotency keys, and estimate() dry runs.
fs-spececoCertified-speculation accept/reject economics (addendum Proposal 9): the decision rule.
fs-vskeletonThe vertical skeleton: a deliberately tiny SDF → PDE → objective → adjoint → optimize → ledger → replay demonstrator.
fs-wasmBrowser (WASM) surface over FrankenSim's pure numerical leaves — real math in the browser, no mocks.
Lumen
Rendering & visualization
fs-imgDeterministic PNG / OpenEXR image plumbing, film / display transforms, and bias-labeled denoising for the render lane.
fs-renderUnbiased spectral path-tracing core (fs-render): the verifiable Monte-Carlo foundations.
fs-vizScientific visualization (fs-viz): the topological summaries that make a 10^8-cell field legible to an agent in one image.
Ascent
Optimization & uncertainty
fs-archiveQuality-diversity archives (fs-archive): MAP-Elites and CVT illumination archives that ILLUMINATE a behavior space.
fs-ascentThe gradient-based optimizer stack: L-BFGS with strong-Wolfe search, trust-region Newton-Krylov (Steihaug).
fs-assimilateData assimilation: validation as a living belief (addendum Proposal 11).
fs-boBayesian optimization: Matern-family Gaussian processes with QMC-multistart hyperparameter fitting, EI/q-EI acquisitions, and deterministic BO loops.
fs-constraintA constraint calculus with semantics: Hard / Soft / Chance / Robust / Certification / Fabrication kinds, evidence-typed violations, and minimal unsat cores.
fs-dfoDerivative-free engines: CMA-ES as a natural-gradient flow, BIPOP restarts, and Nelder–Mead, all deterministic from seed and cross-ISA golden-hashed.
fs-dimineDimensional knowledge mining (addendum Proposal 9): fit closed-form power-law scaling laws over a certified corpus in dimensionless-group.
fs-eprocBetting e-processes, pairwise races, Gaussian-mixture confidence sequences, and e-Benjamini–Hochberg for anytime-valid stopping.
fs-fabManufacturing, fabrication, and code compliance as its own layer (fs-fab): optimization without fabrication semantics produces fantasy artifacts.
fs-geoconFirst-class manufacturability constraints: min-thickness (the anti-paperclip constraint), draft angle, symmetry-by-construction, and keep-out envelopes.
fs-optThe optimization problem IR: typed objective / constraint graphs over manifold variables, with the Goodhart guard.
fs-robustObjective epistemics (addendum Proposal F): apply the three colors to the GOAL itself.
fs-sosProof-carrying optimization (fs-sos): sum-of-squares certificates as executable PROOFS of polynomial lower bounds.
fs-surrogateLearned accelerators with guarantees (fs-surrogate): classical reduced-order models permitted ONLY inside certified validity bands.
fs-tolerallocAdjoint-driven tolerance allocation (addendum Proposal 11's commercial kicker): spend tight manufacturing tolerances.
fs-topolsLevel-set topology optimization: WENO narrow-band advection, fast-iterative-method redistancing, normal velocity extension.
fs-topoptDensity-based topology optimization: SIMP with Helmholtz filtering, Heaviside projection, exact chain-rule sensitivities.
fs-trussGround-structure truss layout optimization: fnx candidate graphs, PDHG plastic-design LP with duality-gap certificates.
fs-uqUncertainty quantification: Karhunen-Loeve random fields with captured-variance evidence, polynomial chaos by regression, QMC propagation.
fs-voiValue-of-information and active validation (fs-voi): the strategic layer deciding what information to acquire next.
Flux
Physics kernel
fs-adjointGradient truth: IFT discrete adjoints through solvers, time-dependent adjoints under revolve checkpointing, Hadamard shape gradients.
fs-bemLaplace BEM panel methods: 3D exterior potential flow with FMM-accelerated GMRES, 2D Hess-Smith airfoils with Kutta condition and adjoint gradients.
fs-contractAssume-guarantee component contracts (addendum Proposal E): certified design motifs.
fs-coupleMultiphysics composition through port-Hamiltonian Dirac structures (fs-couple): partitioned coupling that is PASSIVE BY CONSTRUCTION.
fs-cutfemCutFEM on SDFs: certified cut-cell classification, cut quadrature with error control, ghost-penalty stabilization, aggregation fallback.
fs-ddDomain decomposition: BDDC substructuring with corners-primal coarse spaces, sheaf-harmonic edge enrichment (Bet 11's second consumer).
fs-dwrDual-weighted-residual goal-oriented adaptivity: enriched-adjoint DWR estimates, Doerfler marking, octree h-refinement loops.
fs-feecExterior-calculus core: cochains on complexes, exact integer incidence d, Hodge stars / Whitney masses, and grad→curl→div identities to machine precision.
fs-fluxIncompressible Navier-Stokes, FEEC-native: H(div)-conforming RT0 velocities (exactly divergence-free, pressure-robust), interior-penalty viscous DG.
fs-ifaceInterface types and a coupling-graph checker: Arnold's FEEC periodic table as a type lattice; illegal couplings become compile-time rejections.
fs-igaIsogeometric analysis (fs-iga): Galerkin directly on B-spline spaces.
fs-ladderThe fidelity-ladder registry: ordered rungs per kernel (correlation → RANS → LES) with typed prolongation / restriction.
fs-lbmLattice Boltzmann core (fs-lbm): a D2Q9 BGK stream-and-collide solver with Guo body forcing and halfway bounce-back walls.
fs-materialConstitutive-law kernel: elastic, hyperelastic, J2 plasticity, Mander concrete / Menegotto–Pinto steel, with consistent tangents.
fs-opdslA typed operator IR: one symbolic definition yields residual, JVP, VJP / adjoint, DWR indicators, and MMS studies. A kernel-generating algebra.
fs-probeDiscrepancy probes + budget pie (addendum Proposal 3): runs adjacent-rung model-form probes over the fidelity-ladder registry.
fs-regimePhysics-regime & nondimensionalization: which solver is even valid here? Buckingham-π groups, scaling maps, and alternatives-ranked refusals.
fs-scenarioA boundary-condition & load-case algebra: what is being done to it? as a typed, dimensioned value with frames and stochastic ensembles.
fs-solidElasticity core: small-strain and finite-strain hyperelasticity (via fs-material), locking-free B-bar, body-fitted and CutFEM frontends.
fs-solverMatrix-free Krylov (CG / MINRES / GMRES) plus p-multigrid: resumable, cancellable, deterministic, and adjoint-equipped by construction.
fs-timeStructure-preserving integrators: symplectic Verlet, Lie-group SE(3) / SO(3), generalized-α, IMEX / exponential, with adjoints.
fs-verifyThe certified-speculation verifier: an equilibrated-flux (Prager–Synge) a-posteriori accept test that stamps candidates verified or fails closed.
fs-vpmVortex particle method (fs-vpm): 2-D inviscid vortex dynamics by direct desingularized Biot-Savart induction and RK4 advection.
Morph
Geometry kernel & representations
fs-asbuiltAs-built ingestion: reality as another chart (addendum Proposal 11).
fs-conformRestriction-map plugin conformance SDK (addendum Proposal 7): third-party chart-to-chart converters are certified into tiers.
fs-fmmKernel-independent black-box FMM: Chebyshev interpolation operators on octrees (P2M/M2M/M2L/L2L/L2P), direct near field.
fs-gaGeometric algebra: PGA Cl(3,0,1) motors / screws and CGA Cl(4,1), with const-evaluated multiplication tables.
fs-geomThe Region / Chart abstraction, chart-agreement as a checkable proposition, the Rep Router, and sheaf certificates.
fs-ioImport / export with quarantine: dirty geometry lands as Quarantined and only promotes to Evidence after repair + validity.
fs-meshIncremental Delaunay / tet scaffolding, exact audits, quality refinement, metric fields, and remeshing.
fs-queryUniform geometry queries across chart types: closest point, sphere-trace raycast, offsets, certified clearance, and curvature.
fs-rep-frepCSG / F-rep builders, differentiable R-function Booleans, and interval / Lipschitz / gradient evaluators.
fs-rep-meshHalf-edge surfaces, oriented tet complexes, soup repair, generalized winding numbers, dual contouring, and quality.
fs-rep-neuralNeural implicit charts (fs-rep-neural): small coordinate MLPs as shapes (DeepSDF-style) with SPECTRAL-NORM/Lipschitz-constrained layers.
fs-rep-nurbsRational B-spline charts with exact knot insertion & degree elevation (i128 rationals), trimmed patches, and certified closest-point.
fs-rep-sdfDense tiled SDF grids, the FrankenVDB sparse tree, adaptive octree SDF, narrow-band, and SDF charts.
fs-rep-voxelOccupancy / multi-material voxel charts on VDB, exact Euclidean distance transforms, point clouds, and lattice graphs.
fs-shapeprogGenerative geometry program synthesis (fs-shapeprog): a typed constructive-geometry DSL with SDF semantics.
fs-topoValidity & topology certificates: manifoldness, self-intersection proofs (exact orient3d), and cubical Betti numbers.
fs-xformFFD lattices, RBF morphs, level-set velocity bands, SIMP density fields, composed parameterizations, and foldover detection.
Bedrock
Numerical foundations
fs-adForward-mode duals, the Real trait, gradient checks, implicit-function adjoint hooks, and revolve checkpointing.
fs-chebAdaptive 1D Chebyshev, Lobatto points, differentiation matrices, and Orr–Sommerfeld growth rates.
fs-fftComplex and real FFTs, DCT-II/III, Stockham structure, and transform conformance.
fs-ivlWhat the word Certified means: outward-rounded intervals, affine arithmetic, Taylor models, Newton / Krawczyk, and exact geometric predicates.
fs-laDense BLIS-style GEMM, batched small-dense, factorizations, mixed precision, eigensolvers, and randomized NLA.
fs-randCounter-based Philox streams keyed by logical identity, Sobol / Owen QMC, lattice rules, and distributions.
fs-sparseCOO / CSR / BSR / SELL formats, deterministic assembly, SpMV / SpMM, Chebyshev smoothers, ILU0, PCG, and smoothed-aggregation AMG.
fs-spectralSpectral health monitoring (addendum Proposal 5): track the sheaf-Laplacian lambda-gap as a runtime health metric with hysteresis.
fs-symmetrySymmetry harvesting (addendum Proposal 13): detect cyclic symmetry with a certified asymmetry residual.
fs-tropicalTropical (max-plus) critical-path analytics (fs-tropical): task-DAG timing in the max-plus semiring.
Substrate
Hardware, execution & determinism
fs-alloc128-byte aligned allocation, cache padding, scoped arenas, arena pools, and hugepage policy.
fs-execThe Cx context, two-lane executor, cancellation gates, tile kernels, deterministic reductions, speculative races, and resumable solvers.
fs-mathDeterministic elementary functions with declared ULP budgets, complex arithmetic, error-free transforms, and double-double.
fs-simdScalar baseline plus registered NEON / AVX-512 unsafe capsules behind safe façades and alignment contracts.
fs-soaStructure-of-arrays runtime: 128-byte-aligned per-field buffers, SIMD across elements, zero-copy views. No unsafe.
fs-substrateMachine capability probes, fingerprints, topology maps, dispatch tiers, and Morton / tile IDs.
fs-tilelangA safe tile-kernel DSL: one body lowers to scalar and lane-shaped variants (bitwise-equal) with roofline metadata and auto-generated determinism twins.
Owned by no single layer
Quantities, evidence, macros, governance & benchmarks
fs-benchmarkThe wedge-vertical benchmark & trace corpus (addendum Proposal 7): a single versioned, deterministic artifact.
fs-crosswalkRegulatory vocabulary crosswalk (addendum Proposal 12): a machine-readable mapping of evidence-package fields onto the regulator's existing language.
fs-evidenceEvidence<T> / Certified<T>: a value plus four uncertainty slices, composed conservatively, with model cards, the three colors, and falsifiers.
fs-governAddendum governance as machine-readable data: the design principles (P1-P8), the governance rules.
fs-obsStructured event schema, emitters, and content hashing: the shared observability spine.
fs-qtyCompile-time dimensional quantities Qty<M,KG,S,K,A>, SI parsing, and dimension checks.
fs-soa-deriveThe #[derive(Soa)] procedural macro.
fs-tilelang-macrosThe kernel! macro implementation for fs-tilelang.
fs-wedgeGo-to-market wedge selection as data (addendum Proposal 7): the conjugate-heat-transfer beachhead scored on four criteria.
fs-qty, fs-obs, and fs-evidence are the load-bearing three of this cross-cutting set: threaded through all seven layers rather than owned by any single one. Dimensional quantities are compile-time typed everywhere, every operation emits into one shared observability spine, and Evidence<T>, a value plus its four uncertainty slices, is the currency that crosses every layer boundary. The rest of the set carries the same discipline sideways: the derive macros, the governance and benchmark corpus, the regulatory crosswalk. That is what keeps units, provenance, and error bounds from being re-invented six incompatible times.
fs-qty · fs-obs · fs-evidence
The workspace's invariants are checked mechanically on every build, not left to a style guide anyone can forget.
A dedicated xtask binary is the workspace's conscience. It refuses to let the constellation drift: the acyclic layer direction, the dependency allow-list, the presence of conformance contracts, and the registration of every unsafe capsule are all facts it can prove or fail on before a merge, not after an incident.
Acyclic layer direction
The L0 → L6 dependency graph is walked and asserted acyclic. A crate that reaches sideways or upward (L2 pulling on L4) is a build failure, not a code-review note.
Franken-only dependencies
Every runtime dependency is checked against the Franken constellation allow-list. A stray crates.io import never makes it past the gate.
Contract presence
Each crate that owes a conformance contract must ship its CONTRACT.md, 52 in all. A missing or stale contract fails the run.
Unsafe-capsule registration
Every unsafe block lives in a registered leaf capsule under 300 lines behind a safe façade. Unregistered unsafe is rejected at the door.
The same discipline the Gauntlet applies to numerics, xtask applies to structure: the shape of the workspace is a checkable proposition, so the hundred-plus crates stay one continuum instead of drifting into a hundred-plus projects.