Security
jhf-reed Security
jhf-reed is the controlled agent capability gateway between OpenClaw agents
and module-owned Helpifyr actions. It does not own business-object truth,
identity truth, policy truth, secret truth, or final closeout decisions.
Security Boundaries
- Reed must fail closed when Fabric capability truth, Warp policy, Heddle claims, or Keystore-safe secret brokering is missing.
- Reed must not expose write-capable tools without explicit Fabric admission and owner-module readback.
- MCP is an access layer only. It is not persistence, topology truth, or business workflow authority.
- OpenClaw skills generated from Reed metadata are guidance, not source of truth.
- Raw secrets, token values, credential paths, and service passwords must not be committed, logged, or rendered in public documentation.
- Domain adapters remain module-owned. Reed routes admitted actions and evidence; it does not duplicate module domain logic.
Public Documentation Safety
Public manufacturer docs may describe Reed's gateway role, fail-closed posture, and verification commands. They must not publish internal credentials, runtime operator evidence, tenant-sensitive action payloads, or private approval chains.
Verify Path
python scripts/docs/validate_docs_inventory.pypython scripts/validate_docs_platform_v1_6.pypython scripts/verify_reed_oss_inventory.py
License
AGPLv3. See LICENSE.
Project: https://helpifyr.com