Core controls
- Fail-closed policy and authorization behavior.
- Scoped short-lived credentials with strict claims.
- Append-only audit record model.
- Human approvals captured with actor and decision metadata.
The model is treated as untrusted. Enforcement happens at the gateway before tool execution.
Email security reports to security@imisi.ai. Include reproduction steps and impact details.