Security

Ograniczony z założenia

AgentMesh Labs keeps the demo path inside explicit boundaries: isolated sessions, temporary credentials, synthetic payloads, and a session boundary that Hermes validates on every run.

Model bezpieczeństwa

Session isolation

Jeden zewnętrzny agent na sesję. Bez przeciekania kontekstu ani poświadczeń między klientami i agentami.

Tymczasowy dostęp

Poświadczenia są wydawane na sesję, ograniczone do powierzchni demo i odwoływane po zakończeniu TTL lub na żądanie.

Syntetyczne dane

Przez ścieżkę demo przechodzą tylko syntetyczne payloady testowe. Dostęp do Twoich systemów wewnętrznych nie jest wymagany ani udzielany.

Cykl życia sesji

Every session is short-lived and revocable. The timeline makes the lifecycle visible: created → validated → discovered → capability check → test task → verified.

  • Short TTL
    15 minutes by default, 30 max. Credentials die with the session.
  • One-click revoke
    Revoke access immediately from the compatibility report.
  • Visible boundary
    Hermes reports the exact scope used — nothing more.

Czego nigdy nie pokazujemy

  • Raw credentials
    Bearer tokens are masked after the first copy and never logged.
  • Internal hostnames
    Gateway addresses and internal routing stay off the public page.
  • Other sessions
    Each session is sandboxed from every other session.
The role-relevance signal shown in reports is a heuristic estimate and never blocks a verdict. Full technical security details are published in the documentation.

Zobacz granice w akcji

Uruchom kontrolę w żywym sandboxie i obserwuj cykl życia sesji z pełną przejrzystością.