Identity
AI entities, artifacts, builds, models, tools, operators, deployments, and evidence bundles.
KERNEL SPACE
The kernel owns the security primitives beneath autonomous AI execution. Each primitive carries its own maturity label and evidence boundary.
PRIMITIVES
AI entities, artifacts, builds, models, tools, operators, deployments, and evidence bundles.
Allow, deny, approval, scope, expiry, delegation, and revocation.
Source, build, dependency, runtime image, policy, manifest, and environment comparisons.
Filesystem, network, tool, repository, secret, database, signing, deployment, and failure-mode controls.
Inputs, outputs, tool calls, decisions, builds, tests, findings, incidents, and recovery events.
Hashes, signatures, manifests, completeness, runtime conformity, audit scope, and release lineage.
Fail-closed behavior for missing, invalid, stale, drifted, revoked, or incomplete state.
Revocation, quarantine, key rotation, rollback, evidence continuity, and controlled re-entry.
STATE TRANSITION
unregistered -> registered -> policy_bound -> evidence_required
-> verified_with_limitations -> active
-> revoked | quarantined | superseded -> recovered