✅ TICKET-006: Wake-word Detection Service - Implemented wake-word detection using openWakeWord - HTTP/WebSocket server on port 8002 - Real-time detection with configurable threshold - Event emission for ASR integration - Location: home-voice-agent/wake-word/ ✅ TICKET-010: ASR Service - Implemented ASR using faster-whisper - HTTP endpoint for file transcription - WebSocket endpoint for streaming transcription - Support for multiple audio formats - Auto language detection - GPU acceleration support - Location: home-voice-agent/asr/ ✅ TICKET-014: TTS Service - Implemented TTS using Piper - HTTP endpoint for text-to-speech synthesis - Low-latency processing (< 500ms) - Multiple voice support - WAV audio output - Location: home-voice-agent/tts/ ✅ TICKET-047: Updated Hardware Purchases - Marked Pi5 kit, SSD, microphone, and speakers as purchased - Updated progress log with purchase status 📚 Documentation: - Added VOICE_SERVICES_README.md with complete testing guide - Each service includes README.md with usage instructions - All services ready for Pi5 deployment 🧪 Testing: - Created test files for each service - All imports validated - FastAPI apps created successfully - Code passes syntax validation 🚀 Ready for: - Pi5 deployment - End-to-end voice flow testing - Integration with MCP server Files Added: - wake-word/detector.py - wake-word/server.py - wake-word/requirements.txt - wake-word/README.md - wake-word/test_detector.py - asr/service.py - asr/server.py - asr/requirements.txt - asr/README.md - asr/test_service.py - tts/service.py - tts/server.py - tts/requirements.txt - tts/README.md - tts/test_service.py - VOICE_SERVICES_README.md Files Modified: - tickets/done/TICKET-047_hardware-purchases.md Files Moved: - tickets/backlog/TICKET-006_prototype-wake-word-node.md → tickets/done/ - tickets/backlog/TICKET-010_streaming-asr-service.md → tickets/done/ - tickets/backlog/TICKET-014_tts-service.md → tickets/done/
53 lines
1.4 KiB
Markdown
53 lines
1.4 KiB
Markdown
# Ticket: Boundary Enforcement
|
|
|
|
## Ticket Information
|
|
|
|
- **ID**: TICKET-044
|
|
- **Title**: Boundary Enforcement
|
|
- **Type**: Feature
|
|
- **Priority**: High
|
|
- **Status**: Backlog
|
|
- **Track**: Safety/Memory
|
|
- **Milestone**: Milestone 3 - Memory, Reminders, Safety
|
|
- **Created**: 2024-01-XX
|
|
|
|
## Description
|
|
|
|
Implement boundary enforcement:
|
|
- Separate credentials and config (different .env files, service accounts, key stores)
|
|
- Network-level separation (dedicated containers/namespaces, firewall rules)
|
|
- Prevent family agent from reaching work repos
|
|
- Static policy checks (lint/CI rules rejecting cross-access merges)
|
|
|
|
## Acceptance Criteria
|
|
|
|
- [ ] Separate credentials/config for family vs work
|
|
- [ ] Network separation implemented
|
|
- [ ] Firewall rules preventing cross-access
|
|
- [ ] Static policy checks (lint/CI)
|
|
- [ ] Family agent cannot access work repos
|
|
- [ ] Policy violations caught automatically
|
|
|
|
## Technical Details
|
|
|
|
Separation strategies:
|
|
- Config: separate .env files, key stores
|
|
- Network: containers, namespaces, VLANs
|
|
- Firewall: block family agent from work repo paths
|
|
- CI: lint rules checking for cross-access code
|
|
|
|
## Dependencies
|
|
|
|
- TICKET-002 (repo structure)
|
|
- TICKET-003 (safety constraints)
|
|
- TICKET-004 (architecture)
|
|
|
|
## Related Files
|
|
|
|
- `home-voice-agent/safety/boundaries/` (to be created)
|
|
- `.github/workflows/policy-check.yml` (to be created)
|
|
|
|
## Notes
|
|
|
|
Can proceed in parallel with most tool work. Critical for safety.
|