Hosted preview. Every run here is a recording of a real session. Live runs need the local server with Claude Code: get the code.

Runs

CapAuth issues a lease from the plan and checks every tool call.
recording Agent and task
HMhiva@acme.comOperator

Run summary

Pick a scenario and press Run task.
Agent identity-
Acting for-
Runtime-
StatusIdle
Lease-
Issued-
Time left-
TTL-
Policy ceiling-
Lease source-

Plan

  1. The agent writes its plan before any tool call. Each step is ticked when its call is checked.

Lease capabilities

Only what the plan needs, signed, for the lease TTL. Everything else in the ceiling stays off.

Decisions

TimeDecisionCallReason
Each tool call the agent makes lands here with its decision.

Policies

The ceiling per agent identity. The planner can only narrow it.

Audit ledger

-