ctrlai · in-repo control

Your agent can't break this backend.

10 verified parts — content-locked in parts.lock and re-verified on every commit. Your AI agent writes the product; it cannot touch the infrastructure.

VERIFIEDunmodified · attested · agent-proof
5,601verified lines you didn't write
140conformance checks green
$50/moinfra cost · the parts add $0
0lines your agent can touch
Control · this backend
ctrlai doctor: ready
  • 10 parts installed, owned in this repo
  • 0 modified — every content-hash matches parts.lock
  • 0 behind latest — all current
  • attestations valid · earliest in 10d

Read live from parts.lock. Your own dashboard renders exactly this — in your repo, private, fed by the parts you installed.

Verified partsreadable · locked · attested
Your infrastructure

your data & logic  ·  metered vendors, swappable

Content-locked

Every byte is hashed in parts.lock. ctrlai guard fails CI on a single changed byte — your agent can't slip an edit past review.

Attested

Each part is cryptographically attested and re-verified in CI. Earliest expiry in 10 days.

Conformance-tested

140 tests pin the contracts. The behaviour can't silently drift out from under you.

Agent-proof

parts/ is read-only to your AI agent. It writes only the thin seams; the infrastructure is untouchable.

Keep it under control
Verify + maintainruns in your repo, against your parts.lock
$ ctrlai doctor

Re-checks every part is unmodified, wired, and attested — the same verdict above, in CI or on demand.

ctrlai doctor: ready10 installed · 0 modified · 0 behind · attestations expire in 10d · on your Postgres