P‑AIProject‑AI
Security · v0.8.5

Threat model and hardening surfaces

This page summarizes public threat-model documentation without publishing exploit instructions beyond already documented boundaries.

  • Authority provenance and authenticated claims
  • Proof verification and signature strictness
  • Replay protection with freshness and revocation controls
  • Hash-linked audit-chain integrity
  • Capability mediation across side-effect adapters
  • Path confinement and symlink/traversal resistance
  • Trusted signed time for temporal policy checks
  • Fail-closed parsing and denial propagation
  • Governed build behavior and explicit governance-loss declarations
  • Known hardened-runtime boundaries still listed in threat model and status docs

Documented Source authority: `docs/THREAT_MODEL.md` and `docs/STATUS.md` at pinned commit 9afa7682c781170b402cc8302fffa621c1802c54.

Known boundary This portal is a documentary surface; it does not execute upstream hardened runtime attack suites itself.