The agent wants to act.
The request carries real permission. It can change a real system.
github.delete_repositoryThe model is no longer only generating an answer. It can now change the system behind the screen.
Naos controls AI agent actions before execution and creates verifiable evidence after.
The request carries real permission. It can change a real system.
github.delete_repositoryNaos evaluates the MCP tool-call before execution. The target system is never touched.
repo-destructive-actions/v3DENYThe decision is sealed into an independently verifiable artifact.
ED25519 · RFC 3161 · SHA-256The request carries real permission. It can change a real system.
github.delete_repositoryNaos evaluates the MCP tool-call before execution. The target system is never touched.
repo-destructive-actions/v3DENYThe decision is sealed into an independently verifiable artifact.
ED25519 · RFC 3161 · SHA-256A dashboard asks you to trust the vendor. A proof artifact can be checked independently. Change one field and verification fails.
Evidence you can hand to someone else. The same signed artifact can be independently verified by your auditor, legal team or insurer — without relying on the Naos dashboard.
Naos separates enforceable control from visibility and partial provider actions.
NO BLURRED CLAIMSInline policy enforcement before MCP tool execution.
Ed25519-signed artifacts, RFC 3161 timestamping and offline verification.
Detection and logging are available. Inline blocking is not represented as live.
Local Naos control exists. Provider-side administrative actions remain outside the live claim.
One non-critical workflow is enough to understand how the agent acts, where policy belongs and what evidence Naos leaves behind.
No production-wide rollout. One agent. One workflow. Start in shadow mode, learn, then enforce deliberately.

Choose an agent that already has permission to touch a real system.
See actions, decisions and proof without blocking production.
Turn on inline control only where the policy is explicit.
That's enough to start.
Run a shadow pilot ↗