Skip to content
#

capability-based-security

Here are 47 public repositories matching this topic...

Three packages: @kernel.chat/agent-os (POSIX for AI agents — capabilities, namespaces, quotas, taint, audit, vault, outcomes), @kernel.chat/kbot (terminal AI agent, MCP-native, BYOK), @kernel.chat/kbot-finance (audit-grade AI for regulated industries). Provenance-engineering substrate.

  • Updated Jun 3, 2026
  • TypeScript
open-thymos

Make AI agent actions authorized, auditable, and replayable — not trust-the-prompt. A Rust execution kernel where signed capability writs + effect-ceiling enforcement gate every tool call, and an append-only hash-chained ledger lets you replay and audit exactly what an agent did and why. Cognition proposes; the runtime governs; the ledger records.

  • Updated Jun 4, 2026
  • Rust

InferNode is a security-focused 64-bit Inferno® OS (ARM64/AMD64) for embedded systems, servers, and AI agents. GPL-free, headless-capable, with 280+ utilities and 9P filesystem protocol. Providing a namespace-based alternative to MCP servers. Namespace-bounded security has been formally verified.

  • Updated Jun 4, 2026
  • Limbo

A data-driven, cryptographically signed, registry-backed AI operating system, with capability-scoped execution and graph-executable workflows — living inside your projects, running through a recursive MCP that goes as deep as you dare.

  • Updated Jun 4, 2026
  • Rust

Secure-execution domain repository providing modular runtime-security components for sandboxing, capability enforcement, cryptographic isolation, audit logging, and policy-driven execution control — designed for building hardened application and infrastructure runtimes.

  • Updated Feb 12, 2026
  • Rust

Improve this page

Add a description, image, and links to the capability-based-security topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the capability-based-security topic, visit your repo's landing page and select "manage topics."

Learn more