Visual Proof
The product’s logic is architectural, not cosmetic: capability validation, policy evaluation, approvals, sandboxing, and audit all sit in the actual execution path.
Constrails
Constrails routes meaningful agent actions through a safety kernel that can identify the agent, validate capabilities, score risk, evaluate policy, require approvals, sandbox or quarantine execution, broker tools, and record auditable outcomes.
Request flow
Every step is explicit. If something fails, Constrails fails closed.
Prompting alone isn’t a safety boundary. Constrails turns control into infrastructure with enforcement at execution time. Agents don’t call tools directly — the broker executes only after the kernel decides.
Visual Proof
The product’s logic is architectural, not cosmetic: capability validation, policy evaluation, approvals, sandboxing, and audit all sit in the actual execution path.
Technical Proof
Constrails demonstrates a clear thesis: agent safety belongs in infrastructure, not just prompts, intentions, or surface-level guardrails.
Use Case Fit
Environments that care about least privilege, approvals, auditability, containment, and controlled execution for autonomous or semi-autonomous systems.
Explicit definitions with path, domain, and command controls plus history.
Heuristic scoring with exfiltration-chain detection and quota tracking.
OPA integration with degraded/strict availability modes and fallbacks.
Filesystem, HTTP, and exec adapters with sandbox-first execution.
Lifecycle with webhooks, retries, quota enforcement, and replay flows.
Read-only inspection endpoints, scoped queries, and durable persistence.
Constrails ships with a working kernel (FastAPI), CLI lifecycle, sandbox executor, approval workers, and compose smoke coverage. Areas still maturing include broader sandbox validation, identity lifecycle depth, distribution polish, and Postgres-first migrations.
Stay close
The public repo shows exactly how the kernel works today. For deeper collaboration, governance tailoring, or deployment support, reach out to TMFPRETTY directly.