Dashboard
Platform overview — all domains
Tenants
Manage tenant accounts and provisioning
Services
Single API Gateway · josfox-cloud-sso · Decision #021
| Component | Role | Status |
|---|---|---|
| SHIELD 🛡️ | Auth + 4-level RBAC (user/tenant/corporate/root) | Active |
| SENTINEL 👁️ | Antispam + threat detection ($0 cost) | Planned |
| CAISHEN 💰 | Fund reservation (atomic, 3x margin) | Active |
| HERMES 🕊️ | LLM router — ONLY vendor key holder | Active |
Internet → API Gateway (Shield) → Internal Services. No service accepts direct public traffic.
Secrets
Google Cloud Secret Manager — rotate & manage
Domains
Manage domains across Spaceship + GoDaddy
Billing
Wallet balances and usage across all tenants
Product Catalog
Services available to tenants — pricing, billing, Stripe sync
Legal Entities
JOSFOX corporate structure — intercompanies, tax IDs, Stripe accounts
🦊 FOXTANA
AI Assistant · WhatsApp · Voice · Edge Router · Archetypes
| Default Model | |
| System Persona | |
| Default Language | |
| Max Tokens | |
| Temperature |
| Setting | Value | Notes |
|---|---|---|
| Wake Word | FOXTANA | Porcupine / local model |
| STT Engine | Whisper (local) → Cloud fallback | es-MX primary |
| TTS Engine | Piper (local) → Cloud fallback | es-MX-karlita voice |
| LLM (local) | llama3.2:3b via Ollama | Jetson Orin Nano 8GB |
| LLM (cloud fallback) | gpt-4o-mini | When local is insufficient |
| Kiosk URL | http://192.168.68.36:8090 | Local admin UI |
| Session Timeout | 30 seconds silence | Auto-end conversation |
| Channel | Model | Billing | Status |
|---|---|---|---|
| Web (OpenAI Realtime) | gpt-4o-realtime | $1.50 MXN/min | active |
| Edge (Jetson) | llama3.2 + whisper + piper | Free (on-device) | active |
| WhatsApp Voice | whisper → gpt-4o-mini → tts-1 | $1.50 MXN/message | active |
| Phone (Twilio) | gpt-4o-realtime | $3.00 MXN/min | planned |
| Archetype | Category | Status |
|---|---|---|
| Kids Speech Therapy | Health | active |
| AI Compare | Tools | active |
| Reconciliation | Finance | active |
| PDF Extractor | Tools | planned |
| Publish Ebook (KDP) | Publishing | planned |
| Brand Design (KRMEN) | Design | planned |
🕊️ Hermes — AI Gateway
Connector hub · Foxtail management · FOXTANA-assisted configuration
| Dominio | Registrar | Status | Expira | Auto-renew | DNS |
|---|
Crear Identidad
Resolver Slug
Bucket Info
| Servicio | URL | Estado |
|---|---|---|
| Ingress HMAC → Pub/Sub |
ingress-whatsapp-…run.app | 🟢 public |
| Worker FOXTANA AI + Billing |
worker-foxtana-…run.app | 🔒 IAM |
| Dispatcher Graph API v21.0 |
dispatcher-meta-…run.app | 🔒 IAM |
| Admin Console + API |
josfox-admin-…run.app | 🟢 public |
| Callback URL | https://ingress-whatsapp-784547301987.us-central1.run.app/webhook |
| Verify Token | Secret Manager: meta-verify-token |
| Subscribed Fields | messages |
| Número | Modelo AI | Billing | Estado |
|---|---|---|---|
| +52 33 1279 3716 | Gemini Flash | $0.08 USD/msg · Kill-switch | 🟢 activo |
| Provider | Type | Models | Key Status | Cost/Call | Status | |
|---|---|---|---|---|---|---|
| Google AI | LLM | gemini-2.5-flash, gemini-2.5-pro | 🔐 in vault | $0.004 | Active | |
| OpenAI | LLM | gpt-4o, gpt-4o-mini | 🔐 in vault | $0.030 | Active | |
| Anthropic | LLM | claude-sonnet-4 | ⚠️ no key | $0.015 | Not configured | |
| Meta WhatsApp | Messaging | Business API v21.0 | 🔐 in vault | $0.008 | Active | |
| Stripe | Billing | Payments API | 🔐 in vault | 2.9%+30¢ | Active |
All keys stored in projects/josfox-cloud-sso/secrets/ — NEVER in Firestore.
Only Hermes reads vendor keys. Metered by Caishen ($0.000006/access).
🟢 google-ai-key · 🟢 openai-api-key · 🟢 meta-access-token · 🟢 stripe-secret-key · 🟢 godaddy-api-key · 🟡 anthropic-api-key (missing)
🛡️ The 11 Guardians
Immune system of JOSFOX Cloud · Annex B Framework
| # | Guardian | Domain | Motto | Status |
|---|---|---|---|---|
| 1 | SENTINEL 👁️ | Vigilance | The Watcher on the Wall | Planned |
| 2 | SHIELD 🛡️ | Security | None shall pass without a badge | Active |
| 3 | CAISHEN 💰 | Finance | Everything has a price | Active |
| 4 | HERMES 🕊️ | Connectivity | Messenger of the Gods | Active |
| 5 | TOTH 📜 | Observability | Remember everything | Active (Logging) |
| 6 | KRMEN 🎨 | Design | Make the Soul manifest | Active |
| 7 | ZATAZ 📜 | Data & Governance | Structure is truth | Planned |
| 8 | ATHENA 🦉 | Intelligence | Goddess of Wisdom | Planned |
| 9 | METIS 🧠 | Analytics | Titan of Deep Thought | Planned |
| 10 | CLIO 📜 | Documentation | Muse of History | Planned |
| 11 | AFRODITA 👸 | Quality | Standard of Beauty | Planned |
| Decision | Invariant | Enforced By |
|---|---|---|
| #018 | Guardian Chain: Sentinel→Shield→Caishen→Hermes | Sequential dependency |
| #020 | No Action Unnoticed — everything metered | Caishen ledger |
| #021 | Single Gateway + SADMIN default + explicit allowance | Shield + Firestore grants |
| #022 | Vault-only keys — NO keys in DB | Secret Manager + Hermes |
Microsoft Partner Center
AI Cloud Partner Program · Commercial Marketplace · CSP Reseller
| Partner ID | 7087775 |
| Publisher ID | josfoxllc1772779665200 |
| Publisher Name | JOSFOX |
| Program | AI Cloud Partner — enrolling |
| Marketplace | Commercial Marketplace — active |
| Entity | JOSFOX, LLC · EIN 30-1427709 |
| Offer Type | Product | Status | Notes |
|---|---|---|---|
| SaaS | JOSFOX AI Studio | planned | Voice AI + archetypes, monthly subscription |
| SaaS | Reconciliation AI | planned | Targets Dynamics 365 users |
| Managed Service | JOSFOX for Business | planned | Domain + Email + SSO + AI bundle |
| Consulting | AI Implementation | planned | Professional services |
| API | Purpose | Status |
|---|---|---|
| Partner Center API | Manage customers, orders, subscriptions | available |
| Microsoft Graph | Users, groups, mail, calendar, OneDrive | available |
| Azure AD (Entra ID) | SSO, authentication, directory | available |
| CSP API | Resell Microsoft 365 licenses | needs CSP enrollment |
| Marketplace API | Publish and manage SaaS offers | active |
Google Cloud Reseller
Channel Services · Workspace Reseller · Firebase · Cloud Run
| Organization | josfox.cloud |
| Projects | josfox-cloud-sso · josfox-ai · josfox-money |
| Workspace Reseller | needs enrollment |
| Channel Services | needs enrollment |
| Firebase | active — 3 projects |
| Cloud Run | active — 9 services |
| Product | Resell Method | Our Price | Status |
|---|---|---|---|
| Google Workspace | Workspace Reseller API | $120 MXN/seat/mo | needs API |
| Firebase Hosting | Direct provisioning | $99 MXN/site/mo | ready |
| Cloud Run Services | Direct provisioning | Usage-based | active |
| Google Ads | Ads API | $499 MXN/mo mgmt | planned |
| Chrome Enterprise | Channel Services API | Per-device | future |
| API | Service Name | Purpose | Status |
|---|---|---|---|
| Channel Services API | cloudchannel.googleapis.com | Resell GCP + Workspace | available |
| Enterprise License Manager | licensing.googleapis.com | Manage Workspace licenses | available |
| Reseller API | reseller.googleapis.com | Workspace subscriptions | available |
| Admin SDK | admin.googleapis.com | Users, orgs, devices | active |
| Gmail API | gmail.googleapis.com | Email management | available |
| Cloud Billing API | cloudbilling.googleapis.com | Billing accounts + costs | active |
DB Architecture
Firestore collection schema — josfox-cloud-sso
Logs
Live Cloud Logging — replaces Firestore toth_logs
JOS Context
Context storage · KRMEN spec · .jos registry · FOXTANA corpus
.jos Registry
All registered .jos artifacts across tenants
📈 Ingresos y Costos
Facturación, Costos de IA y Analítica Financiera
🤝 A2A & MCP Activity
Monitoreo de handshakes e intenciones en la red .jos
📊 Analítica de Uso
Métricas del ecosistema, tokens y consumo