Specs are execution primitives
A spec runs only inside the policy, budget, connector, approval, and evidence limits configured for it. Unknown work is denied by default.
EnforcedHELM AI Company OS
Company context is not company authority. HELM gives security and platform teams a reviewed Console surface for policy packs, agent action proposals, notification routing, emergency stop, receipts, and evidence export before approved work crosses the Kernel boundary.
Reviewed company loop
Authority envelope
Company work runs inside configured policy, budget, connector, approval, and proof envelopes. The system can move only where those rules already hold.
A spec runs only inside the policy, budget, connector, approval, and evidence limits configured for it. Unknown work is denied by default.
EnforcedDraft company rules become authority only after review, simulation, approval, promotion, and receipts.
ReviewedTickets, docs, incidents, and receipts can inform action; raw context cannot approve action by itself.
ObservedPolicy and enforcement verdicts stay deterministic. No side effect runs without a pass.
Non-bypassableCompany work loop
Every run follows the same path: sense company state, catch drift, propose a bounded fix, gate it through policy and approval, and leave a signed receipt reviewers can check later.
Ingest company context from work systems.
Detect drift between should and is.
Generate bounded work specs.
Approve, escalate, or deny through Kernel.
Record receipts and update the graph.
Review console
Proposed work becomes executable only inside policy, connector, approval, notification, and proof envelopes. Anything outside the configured boundary is escalated, denied, or halted.
See the Kernel boundaryPolicy, action proposals, notification routes, and emergency controls in one governed workspace.
Policy author - Compliance / GRC - Production
The proposal touches external write authority and requires security-admin review.
Decision receipt recorded
Export pending
Workspace execution halt
Security Admin
The reviewed Console exposes where company agent policy lives, which agent actions await approval, where governance notifications route, and how a workspace is halted when execution should stop.
Security and platform teams can select department policy packs, draft, compile, activate, and inspect active policy versions.
Live surfaceAgent-prepared actions stay proposals until a reviewer approves or denies them with receipt-backed evidence.
Review pathPolicy, action, finding, and emergency events route through masked server-side endpoint references instead of raw browser secrets.
RoutedEvidence export and emergency stop/release live beside governance events so execution can be halted and reviewed.
Fail closedOperator lenses
One loop. Four lenses. Different questions, same proof.
Receipt timelines and ProofGraph records show what changed, who approved it, and why.
Policy checks, signed intent, CodeIndexReceipt, CodeImpact, and receipts make the action path checkable.
DENY, ESCALATE, and quarantine receipts record the blocked path without running the action.
ProofGraph and EvidencePacks provide the review path without making raw context authoritative.
“Bring one work loop to the boundary.”
We review one workflow, map the policy and notification routes, and implement with proof.