Interface
Receives only sanitized, typed data.
does not store secrets
Security
GOCODE builds a local boundary with explicit trust boundaries, integrity checks, and safe shutdown when evidence is insufficient.
Trust map
Owner, channel, and integrity checks happen before state changes.
Receives only sanitized, typed data.
does not store secrets
In the Unix/macOS preview, checks the owner, file mode, and loopback address.
Windows: deny until native ACL
Verifies ordering, integrity, and cursor.
durable record
Verifiable mechanisms
No single item replaces a future independent security review.
HMAC cursor, high-water mark, and sequence validation.
Projection and cursor are committed before delivery is acknowledged.
Process launch is rejected until a certified Phase 6B profile exists.
Checks authorization, version, availability, and revocation.
Redelivery does not create duplicate state.
The current deterministic provider has no network, file, or process access.
Honest boundary
Phase 6B native isolation, Windows/Linux qualification, real providers, and an independent review are not yet complete.
Move forward with GOCODE
This link is informational: the form is inactive and no contact data is collected.