Skip to content

Research: design inputs for the Immune-system lane #190

Description

@George-RD

Part of #182

Question

Return design inputs, not a survey, from: CaMeL / AgentDojo, FIDES, Progent, RTBAS, capability-derived tool catalogs, taint tracking.

Deliverables:

  1. The static-vs-runtime enforcement split for a Rust kernel: what each system checks before inference vs during execution, and which side each of our three designs belongs on.
  2. What the quarantine boundary returns: the type/shape crossing from untrusted content back into the planning context.
  3. The branch-steering residual: what remains exploitable when control flow can branch on tainted data, and what each system does about it.

Findings land on a throwaway research/immune-system-design-inputs branch as a Markdown file, linked from this ticket. Feeds the three design tickets in this lane.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

Labels

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions