Fail-closed by default
Missing input, invalid authorization, or uncertainty → deny. “Allow” must be explicit.
Audit-ready receipts
Produce verifiable evidence of decisions so audits don’t depend on vendor trust or screenshots.
Mechanical unreachability
When blocked, the side-effect path is unreachable in practice (e.g., no credentials exist).
Get in touch
Email: dev@sophentis.ai
If you want, reply with: environment, what action you need governed, and what “PASS” should mean.