Fail-closed execution firewall for AI agents: quarantine MCP tools, proxy OpenAI-compatible requests, emit signed receipts, and verify EvidencePacks offline.
-
Updated
Jun 14, 2026 - Go
Fail-closed execution firewall for AI agents: quarantine MCP tools, proxy OpenAI-compatible requests, emit signed receipts, and verify EvidencePacks offline.
Action Control for autonomous agents. Check posture. Gate risky actions. Prove execution. Fits your existing agent stack.
Active development continues at ScopeBlind/scopeblind-gateway. - Security gateway for MCP servers. Cedar policy engine, Ed25519-signed receipts, per-tool enforcement. IETF Internet-Draft. 4 patents pending. npx protect-mcp
Ed25519 signed receipts + Cedar policies for AI agents and physical devices. 5 ecosystem merges (Microsoft AGT, AWS Cedar, Claude Code). IETF draft-farley-acta-signed-receipts. npx protect-mcp
MCP server for offline verification of signed artifacts. Receipts, manifests, bundles. Apache-2.0.
Open source shows what could run. Receipts prove what did run. A signed-receipt wrapper for the published xai-org/x-algorithm Phoenix demo pipeline. Apache-2.0.
Tamper Signal: signed receipts for vibe-coded data pipelines. Proves nobody changed your data, and shows the exact link if they did.
IETF Internet-Drafts for the Veritas Acta protocol: signed receipts and knowledge units
Claude Code skill for ScopeBlind trust stack — agent identity, MCP security, signed receipts, offline verification.
GTM agent for technical founders. Pay-per-result. Signed receipts. Two surfaces: terminal CLI + local web dashboard.
Agent Bazaar: an agent-native marketplace inspired by NARA. ed25519 identity, signed Aapp calls, hash-chained ledger, and a live explorer dashboard.
Fiber payment verification to signed access receipts on CKB Fiber.
MCP server for Veritas Acta — submit claims, evidence, and challenges to contestable public records from Claude, Cursor, or any MCP client.
Bounded shell and CLI execution for AI agents: structured contracts, policy-gated execution, hardened Linux runtime enforcement, and signed receipts.
Cryptographic evidence integrity infrastructure for compliance workflows
Signed AI-Outcome Receipts (SAOR v0.1): local, signed cost-per-AI-outcome receipts. Spec + producer CLI + offline verifier. Nothing leaves your machine.
Deterministic verification receipts for AI systems. CPU-only, signed, reproducible, independently verifiable.
Asqav shadow AI capture browser extension. Emit IETF aligned compliance receipts for AI tool use observed in managed Chromium browsers.
KaibanJS integration for Asqav. Cryptographic audit trails for multi agent task execution.
Asqav proxy connector for Chatbase Custom Actions. Block out of mandate actions at sign time and keep a verifiable record.
Add a description, image, and links to the signed-receipts topic page so that developers can more easily learn about it.
To associate your repository with the signed-receipts topic, visit your repo's landing page and select "manage topics."