Ubuntu NordVPN gateway with a LAN web panel, per-device policy routing, nftables NAT, and fail-closed routing for TVs, tablets, and other devices.
-
Updated
Aug 4, 2026 - Shell
Ubuntu NordVPN gateway with a LAN web panel, per-device policy routing, nftables NAT, and fail-closed routing for TVs, tablets, and other devices.
Open-source authorization gateway for AI agent tool calls. Enforce allow, deny, and approval-required decisions before agents execute tools.
Policy-driven, fail-closed model routing for OpenClaw
Systems language and runtime for explicit authority, typed distribution, and security-first process supervision.
deterministic governance layer for AI-assisted task execution
Cryptographic Harness for Uncensorable AI Agent Communication. Post-quantum verification architecture for autonomous AI agents. Fail-closed network policy. NTRU-Encrypt KEM at λ=128. 17/17 leaks fixed. The fence that holds.
Deterministic pre-execution gate for AI agents (fail-closed, YAML policy)
ACGS Governed System— runtime governance broker for autonomous agent execution
🏛️ Deterministic rejection layer for computational legal claims. Verifies dates, amounts, and structured constraints; blocks unproven legal outputs.
Deterministic verification layer for AI-generated financial decisions. Verifies math (NPV, IRR, Black-Scholes, YTM, VaR), compliance (AML/KYC via Z3), and banking schemas (ISO 20022, SWIFT) — fail-closed, proof-backed. Not execution. Verification.
Seu agente. Sua máquina. Suas regras. — agente pessoal de IA 100% local, com supply chain provada (SLSA + SBOM + builds bit-a-bit reproduzíveis)
Deterministic three-state stop controller. Constraint-first design. Fail-closed.
AXIOM Mesh 0.12.0-dev.3: local-first, fail-closed coordination kernel with zero-dependency setup, authenticated Gateway contracts, cryptographic evidence, and an experimental loopback AXIOM One PWA for governed owner memory and bounded provenance links. No live deployment or production promotion claimed.
Deterministic verification layer for infrastructure as code. Verifies AWS IAM policies, network reachability, and cost estimates before deployment — sits between AI agents and cloud execution. Powered by Z3 and NetworkX.
RPCShield is a static analysis tool to detect dependency relations (fail-close/fail-open) between microservices.
Distributed process supervisor and coordination wrapper (leader election, semaphores, cron) built on etcd v3 for zero-dependency Linux process orchestration.
Zero-trust API firewall and security integrity layer for autonomous AI agents & Model Context Protocol (MCP) tool execution. Secure, TOCTOU-proof, fail-closed.
Bounded, auditable agent operations: agents work inside a sealed, observable terrarium — nothing leaves except through a typed-phrase human gate. Fail-closed model routing, hash-only receipts, 95 tests.
Cluster wide verification harness for byte floor, seals, and stationary state checks.
Receipt-gated SDK for AI agents — an agent cannot authorize its own actions or rewrite what it did. No valid receipt, no action.
Add a description, image, and links to the fail-closed topic page so that developers can more easily learn about it.
To associate your repository with the fail-closed topic, visit your repo's landing page and select "manage topics."