Security, Supply Chain and Provenance

Named human sign-off paired with an adversarial pass on a decorrelated model, over a change whose full dependency footprint is known.

Module SEC — the dual gate

Pre-merge security review pairs named human sign-off with an adversarial pass on a decorrelated frontier model — deliberately not the model that wrote the code, because a model reviewing its own output shares its blind spots.

Module SSC — what the change drags in behind it

An agent adding a package is a supply-chain decision made by a model, and hallucinated or typosquatted package names are a live attack class. SSC covers:

  • Package and dependency change control
  • SBOM diffing between the current and proposed states
  • SAST correlation and suppression governance
  • A standing vulnerability register

The provenance chain

Immutable and offline-verifiable, running from the original conversation to the behaviour observed in production. It answers “who asked for this, who approved it, what ran, and what changed” without depending on ExaCollab still being available — or still being trusted.