Release Control

Release Gates

Gate definitions are public-safe. Approvals and protected gate runs require PLATPHORM_API_KEY and persisted evidence.

Site Public Surface Gate

needs_human_review

Blocks releases when required public discovery, docs, health, sitemap, RSS, or policy files fail.

Required suites
required-route-compliancesitemap-no-dead-link-compliancerss-feed-validityagent-policy-validation
Threshold 90% · Block on critical yes · Human approval required
Evidence: no last run has been persisted for this built-in gate unless a protected gate execution records one.

MCP Tool Gate

needs_human_review

Requires JSON-RPC introspection, schema validity, and protected action rejection.

Required suites
mcp-json-rpc-introspectionprotected-action-rejection
Threshold 90% · Block on critical yes · Human approval required
Evidence: no last run has been persisted for this built-in gate unless a protected gate execution records one.

API Contract Gate

needs_human_review

Requires OpenAPI validity and public/protected API boundary clarity.

Required suites
openapi-validityprotected-action-rejection
Threshold 90% · Block on critical yes · Human approval required
Evidence: no last run has been persisted for this built-in gate unless a protected gate execution records one.

Discovery Compliance Gate

needs_human_review

Requires llms, sitemap, RSS/feed, robots, OpenAPI, and well-known policy files to be public-safe and valid.

Required suites
required-route-compliancellms-readabilitysitemap-no-dead-link-compliancerss-feed-validity
Threshold 92% · Block on critical yes · Human approval required
Evidence: no last run has been persisted for this built-in gate unless a protected gate execution records one.

No Secret Leak Gate

needs_human_review

Blocks releases when secrets, raw request metadata, raw x-vercel-ja4-digest, or private evidence appear in public artifacts.

Required suites
protected-action-rejectionx-vercel-ja4-digest-redaction
Threshold 100% · Block on critical yes · Human approval required
Evidence: no last run has been persisted for this built-in gate unless a protected gate execution records one.

Agent Policy Gate

needs_human_review

Requires agent policy, AI policy, trust policy, security contact, and robots alignment.

Required suites
agent-policy-validationprotected-action-rejection
Threshold 95% · Block on critical yes · Human approval required
Evidence: no last run has been persisted for this built-in gate unless a protected gate execution records one.

Browser UI Gate

degraded

Requires BrowserOps page-load, link, form, mobile, and no-stuck-loading evidence when provider execution is configured.

Required suites
browserops-page-loadbrowserops-link-check
Threshold 90% · Block on critical yes · Human approval required
Evidence: no last run has been persisted for this built-in gate unless a protected gate execution records one.

AgentUI Render Gate

degraded

Requires MCP tool schemas to render as AgentUI forms with validation and no dead controls.

Required suites
agentui-form-renderagentui-phorm-to-workflow-check
Threshold 90% · Block on critical yes · Human approval required
Evidence: no last run has been persisted for this built-in gate unless a protected gate execution records one.

Sandbox Execution Gate

degraded

Requires bounded Sandbox command execution and real command output evidence.

Required suites
sandbox-command-execution
Threshold 90% · Block on critical yes · Human approval required
Evidence: no last run has been persisted for this built-in gate unless a protected gate execution records one.

Tool-to-Tool Workflow Gate

degraded

Requires each cross-service handoff to produce public-safe evidence and trace links.

Required suites
tool-to-tool-workflow-chainclaws-tool-orchestration
Threshold 88% · Block on critical yes · Human approval required
Evidence: no last run has been persisted for this built-in gate unless a protected gate execution records one.

CLI Command Gate

degraded

Requires platphormctl inspect, validate, dry-run, and harness commands to be documented and evidence-producing.

Required suites
platphorm-cli-harness-run
Threshold 90% · Block on critical yes · Human approval required
Evidence: no last run has been persisted for this built-in gate unless a protected gate execution records one.

PlatPhorm Network Release Gate

needs_human_review

Network-level release gate covering public surface, MCP, API, discovery, policy, browser, AgentUI, Sandbox, workflow, CLI, and regression evidence.

Required suites
required-route-complianceopenapi-validitymcp-json-rpc-introspectionagent-policy-validationregression-baseline-comparerelease-gate-decision
Threshold 94% · Block on critical yes · Human approval required
Evidence: no last run has been persisted for this built-in gate unless a protected gate execution records one.