🛡️ Safety Gate
AEGIS safe action matrix and task type risk tiers
The safety gate evaluates every task before execution. Blocked tasks are rejected unconditionally. Needs-approval tasks require explicit operator sign-off.
Safe Actions (17)
ActionRisk
read_filesafe
list_directorysafe
query_database_readonlysafe
search_memorysafe
generate_reportsafe
summarize_textsafe
run_auditsafe
check_service_statussafe
read_model_infosafe
run_embeddingsafe
list_taskssafe
view_dashboardsafe
view_logssafe
run_proof_of_lifesafe
brain_council_consultsafe
challenge_mode_runsafe
brain_bridge_lookupsafe
Needs Approval (12)
ActionRisk
write_fileneeds_approval
update_databaseneeds_approval
delete_taskneeds_approval
run_scriptneeds_approval
stop_serviceneeds_approval
start_serviceneeds_approval
restart_serviceneeds_approval
pull_modelneeds_approval
create_collectionneeds_approval
drop_collectionneeds_approval
send_notificationneeds_approval
export_dataneeds_approval
Blocked Actions (11)
ActionRisk
send_emailblocked
send_messageblocked
deploy_to_productionblocked
rm_rfblocked
sudo_commandblocked
modify_system_filesblocked
create_external_accountblocked
execute_paymentblocked
publish_postblocked
access_external_api_keyblocked
open_port_externalblocked
Task Type → Risk Tier
Task TypeRisk Tier
auditsafe
deleteneeds_approval
demosafe
deployblocked
healthsafe
memorysafe
messageblocked
modelsafe
paymentblocked
readsafe
reportsafe
runneeds_approval
searchsafe
systemblocked
unknownneeds_approval
updateneeds_approval
writeneeds_approval