Skip to main content

Security

jhf-reed Security

jhf-reed is the controlled agent capability gateway between OpenClaw agents and module-owned Helpifyr actions. It does not own business-object truth, identity truth, policy truth, secret truth, or final closeout decisions.

Security Boundaries

  • Reed must fail closed when Fabric capability truth, Warp policy, Heddle claims, or Keystore-safe secret brokering is missing.
  • Reed must not expose write-capable tools without explicit Fabric admission and owner-module readback.
  • MCP is an access layer only. It is not persistence, topology truth, or business workflow authority.
  • OpenClaw skills generated from Reed metadata are guidance, not source of truth.
  • Raw secrets, token values, credential paths, and service passwords must not be committed, logged, or rendered in public documentation.
  • Domain adapters remain module-owned. Reed routes admitted actions and evidence; it does not duplicate module domain logic.

Public Documentation Safety

Public manufacturer docs may describe Reed's gateway role, fail-closed posture, and verification commands. They must not publish internal credentials, runtime operator evidence, tenant-sensitive action payloads, or private approval chains.

Verify Path

  • python scripts/docs/validate_docs_inventory.py
  • python scripts/validate_docs_platform_v1_6.py
  • python scripts/verify_reed_oss_inventory.py

License

AGPLv3. See LICENSE. Project: https://helpifyr.com