OxDeAI adds signed, fail-closed authorization before AI agents can act
docybo · reddit · 2026-07-21
OxDeAI is an open-source protocol that adds a deterministic authorization boundary before AI agents execute side effects.
- The core design separates decision from enforcement: an agent proposes intent, OxDeAI evaluates (intent, state, policy), and only then emits a signed AuthorizationV1 artifact.
- A guard verifies the artifact before any action runs, with fail-closed behavior, replay protection, trusted key sets, and offline-verifiable audit envelopes.
- The project already ships adapters for LangGraph, CrewAI, AutoGen, OpenAI Agents SDK, and OpenClaw.
- The author says cross-language reproducibility is complete for serialization and revocation-list surfaces, but not yet for every authorization verdict; no third-party security review has happened yet.
Related event: OxDeAI Open-Source Protocol Sets Execution Boundaries for AI Agents(2 posts)→
More from coding & agent
- Cognition's SWE-2 uses a KKT duality argument in RL to shift the effort Pareto curve — YouJiacheng · 2026-09-11
- First-ever Three.js Conference lands in Paris, with a panel on AI-shortened design workflows — OdinLovis · 2026-09-11
- Data engineering, not agent frameworks, is the real bottleneck for enterprise AI agents — dhruv2038 · 2026-09-11
- RTK Terminal Compression Cuts Tokens but Leaves Your AI Coding Bill Unchanged — Bartaseth · 2026-09-11
- GPT-6 Astra beats Factorio with enemies in 44 in-game hours at ~$4,500 API cost — liminal_bardo · 2026-09-11
- Investment Analyst Asks How to Build a Claude-Based Diligence Agent Stack — Careless_Tie2286 · 2026-09-11