Version 1.0.0
Deployment profiles
The two build profiles, what they change, and which one you get by default.
The deployment profile is a build parameter, not a runtime setting. An artifact does not know which profile produced it, and cannot switch.
Values
Section titled “Values”| Profile | Effect |
|---|---|
on-premise | Restricted artifact. The network output layer is the inert implementation, the one the code imports by default: no error reporting, no version check. This is the profile you get by default, without specifying anything, and nothing needs to be run to get it. (The product has not measured usage in any profile since 11 August 2026.) |
serverless | Full artifact, intended for a deployment operated by the publisher. The network output layer is active. You have to ask for it explicitly. |
How it is selected
Section titled “How it is selected”Through a command-line argument:
node build.mjs --profile=serverlessOr through an environment variable:
LEMNISCATE_DEPLOYMENT_PROFILE=serverless node build.mjsWith neither, the build produces on-premise. An unrecognized value fails the
build rather than falling back to a default: the only accepted values are
on-premise and serverless.
Checking what an artifact contains
Section titled “Checking what an artifact contains”The check inspects the six deliverables, and it only judges what was built: a missing component is not compliant, it is reported as missing and the check fails. So build them first:
npm run build --prefix extensions/clinpm run esbuild-base --prefix extensions/vscode(cd gui && NODE_OPTIONS=--max-old-space-size=6144 npx vite build)npm run build --prefix llm-gatewaynpm run build --prefix gateway-admin(cd extensions/intellij && ./gradlew buildPlugin)The sixth, the JetBrains plugin, is written in Kotlin: module substitution does
not reach it. You request its profile from Gradle, with the same rule and the
same closed default: ./gradlew buildPlugin produces the air-gapped one,
-PprofilDeploiement=serverless the open one. It ships as an archive, which the
check opens, along with the .jar it contains.
node scripts/verify-onprem-artifact.mjsTo check only one of them, the --composant option narrows the scope and says so
in its output: it does not waive any check, it only states what it did not look
at.
The check covers the built bundle, not the source code.