Every protected action,
signed at decision time, sealed at the archive.
SecOps is a signed-action forensic ledger — the cryptographic receipt your existing EDR, SIEM, and diode hardware do not produce, shaped to the data fields a cyber-insurance underwriter or regulator actually asks for. Three EIP-712 signatures per action across T1 / T2 / T3. Sits beside your stack, not in front of it. v1.0 scope ↓
What v1.0 is, and what it is not
- EIP-712 receipt signed at the endpoint, per protected action.
- Per-tier domain separation — replay of receipts across tiers is cryptographically impossible.
- Tamper-evident chain on what reaches the T3 archive.
- Go ↔ WASM digest parity (Vertical Parity Law).
- Insurer-aligned bundle export (insurer_safe_harbor_v1, regulator_dora).
- Not an active OS gate. No eBPF, LSM, MiniFilter, WFP, ETW, or ESF in this tree. A
decision=denyreceipt does not stop the underlying action. - Not durable end-to-end. "No information lost" applies only to what reaches T3; transit is best-effort until B4.
- Not a policy engine. Anima v1.0 signs what it is told to sign.
- Not HSM-quorum-orchestrated. The receipt asserts a quorum; the protocol is out of scope.
If you need an active enforcement gate today, your EDR is the answer (CrowdStrike, SentinelOne, Defender). Anima sits beside it and produces the receipt your underwriter wants. The bounded "blocks X" sentence becomes honest only when B3 of the corrective plan ships — see docs/secops/RELEASE_v1.0_SCOPE_CLARIFICATION.md and S2_CORRECTIVE_IMPLEMENTATION_PLAN_2026-05-20.md.
How SecOps works
Every protected action flows through three cryptographic tiers. The one-way data diode between T2 and T3 eliminates an entire attack class — T3 never talks back.
Missing signatures are themselves evidence.
Seven capsules, three tiers
Capsule ID range 0xA000…0000 – 0xAFFF…FFFF. Full 15-slot bundle; 7 shipped, parity-green.
Signs every protected action on the endpoint with a local TPM-bound key.
Continuous liveness attestation. Absence of heartbeat is itself evidence of tampering.
Emits an EIP-712 signed receipt with decision = allow | deny against a signed policy manifest. v1.0 signs the decision; it does not intercept the underlying action. See v1.0 scope ↓
Emits a signed quarantine-state receipt for an endpoint pending analyst decision. Signed and timestamped; v1.0 does not itself isolate the endpoint.
Emits a signed receipt asserting an N-of-M HSM quorum was reached. v1.0 signs the receipt; quorum orchestration is out of scope for v1.0.
Cross-attests the T1+T2 signature chain into the air-gapped archive via one-way ingress.
Packages the incident evidence chain for handoff to insurer, counsel, regulator, or IR firm.
One attestation spine,
every deployment
SecOps wraps each vertical's protected actions in T1 observation, T2 enforcement gating, and T3 air-gapped cross-attestation. Organized by host vertical.
Trading desks, settlement, payment issuance
Gate trading-floor endpoints, settlement-system terminals, and payment-issuance workstations. T2 sits inline with every trade execution and payout authorization.
PHI workstations, infusion pumps, EHR overrides
Gate PHI-access workstations, infusion-pump controllers, and EHR clinical override events. Every access to patient data is observed, gated, and sealed.
Benefits issuance, warrants, elections, FOIA
Gate benefits-issuance terminals, warrant-execution endpoints, elections-tabulation systems, and FOIA-release workstations.
Escrow release, title transfer, e-signatures
Gate escrow-release terminals, title-transfer workstations, and e-signature endpoints during high-value closings. Every disbursement is three-tier attested.
Agent action execution before production
Gate AI-agent action execution before it touches production systems. T2 becomes the agent's policy chokepoint — no action reaches production without a signed authorization.
IEC 62443 zone-conduit boundaries
Gate IEC 62443 zone-conduit boundaries. T2 sits inline with the Purdue Level-3↔Level-2 cut. Every control command crossing a zone boundary is observed, gated, and sealed.
Three-tier receipt structure
EIP-712 typed data for a t3_incident_bundle. Three nested signatures — one per tier. A horizontal action-gate scenario, not tied to any single vertical.
Cross-sector compliance coverage
SecOps capsules map to control classes across multiple regulatory frameworks. Broad, not sector-specific — the same attestation spine serves every deployment.
IEC 62443 Zones
- SR 3.1 Zone-conduit integrity
- SR 5.1 Network segmentation
- SR 7.6 Network diagnostics
- T2 Inline gate at Purdue L3↔L2
NIST CSF Functions
- ID Asset attestation (T1)
- PR Access control (T2 gate)
- DE Anomaly detection (T1)
- RS Incident bundle (T3)
ISO 27001 / SOC 2
- A.8 Asset management
- A.9 Access control
- CC7 System operations
- CC8 Change management
Sector-specific
- HIPAA Security Rule §164.312
- PCI DSS v4.0 Req. 10
- NERC CIP-005 / CIP-007
- NIS2 Art. 21 risk measures
Three deployment topologies
Same data diode constraint at every scale. The one-way ingress is identical whether the deployment is a single-site SMB or a multi-region critical-infrastructure network.
T3 never talks back.
Configuration arrives by physical key insertion. This eliminates an entire attack class. Three acceptable ingress mechanisms, ranked by assurance:
Optical data diode
Physical fiber-optic one-way link. No electrical return path. The gold standard for air-gapped T3 ingress. Vendor-certified unidirectional.
Serial pull
T3 initiates serial-port read on a strict schedule. T2 writes to a buffer; T3 pulls. No bidirectional handshake. Air gap maintained by protocol discipline.
Physical media
Write-once optical disc or signed USB. Manual courier. Chain of custody on the physical medium itself. Suitable for low-volume, high-ceremony deployments.
Rule 0: ADD-ONLY
SecOps composes with the kernel's other verticals without touching them. It adds capsules and gates — never edits another vertical's manifests, signatures, or ledgers.
Request a Safe Harbor briefing
SecOps supports defensibility posture for cyber-insurance evidentiary claims, incident-response chain-of-custody, and post-breach regulatory review.