Security Pipeline (stages 3–8)
Live today
The default-deny policy, capability check, approval gate, controlled execution chokepoint, content-safety validation, and audit logging are real, tested, and actively enforced -- right now, for every one of the 3 active capabilities. This is not a simulation and not a future plan.
See the full security architecture →
Desktop Operator (stages 1–2, and beyond)
In Development
Real, extensively tested architecture -- not yet wired to observe or control anything live. The package's own module documentation explicitly states it does not yet activate automation.
Approval and kill-switch gating are foundational design principles built into the architecture from the start, ahead of any live automation.
370 real automated tests cover this subsystem -- extensive test coverage for a system that does not yet act on anything live.