- •Authority provenance and authenticated claims
- •Proof verification and signature strictness
- •Replay protection with freshness and revocation controls
- •Hash-linked audit-chain integrity
- •Capability mediation across side-effect adapters
- •Path confinement and symlink/traversal resistance
- •Trusted signed time for temporal policy checks
- •Fail-closed parsing and denial propagation
- •Governed build behavior and explicit governance-loss declarations
- •Known hardened-runtime boundaries still listed in threat model and status docs
Security · v0.8.5
Threat model and hardening surfaces
This page summarizes public threat-model documentation without publishing exploit instructions beyond already documented boundaries.
Documented Source authority: `docs/THREAT_MODEL.md` and `docs/STATUS.md` at pinned commit 9afa7682c781170b402cc8302fffa621c1802c54.
Known boundary This portal is a documentary surface; it does not execute upstream hardened runtime attack suites itself.