Skip to content

Latest commit

 

History

History
144 lines (129 loc) · 14.4 KB

File metadata and controls

144 lines (129 loc) · 14.4 KB

CUA Gateway Research Index

Computer-Use Agent Gateway — Deep Research & Implementation Reference

Source Report

Research Topics

1. Browser Automation & Instrumentation

  • Browser Automation — Playwright, Puppeteer, Selenium, CDP, WebDriver BiDi, chromedp
  • Focus: action APIs, structured context (DOM/A11y), tracing, CDP proxy/mediation

2. Remote Desktop & Virtual Display

  • Remote Desktop — Guacamole, noVNC, VNC, RDP, Weston, Xvfb, GNOME Remote Desktop, WebRTC, DCV
  • Focus: protocol mediation, session recording, headless compositors, containment

3. Input Injection & Control Surfaces

  • Input Injection — uinput, XTEST, SendInput, Quartz Events, UIA, XDG Portals
  • Focus: platform-specific injection, permission models, Wayland security

4. Session Recording & Screen Capture

  • Session Recording — FFmpeg, ScreenCaptureKit, Desktop Duplication API, PipeWire, CDP capture
  • Focus: frame capture pipelines, artifact encoding, receipt evidence collection

5. Attestation, Sandboxing & Signing

  • Attestation & Signing — TPM 2.0, Nitro Enclaves, SGX, SEV-SNP, TDX, Sigstore, COSE, Secure Enclave
  • Focus: hardware roots of trust, keyless signing, transparency logs, receipt integrity

6. Orchestration & Containerization

  • Orchestration — Docker, containerd, gVisor, Firecracker, Kata Containers, KVM, QEMU
  • Focus: isolation models, microVM vs container tradeoffs, runtime lifecycle

7. Receipt Schema & Signing Pipeline

  • Receipt Design — hash chains, COSE envelopes, evidence hashing, redaction, multi-signature
  • Focus: schema design, verification flows, artifact storage, append-only ledger patterns

8. Policy Engine & Enforcement

  • Policy Engine — allowlists, redaction, approval hooks, rate limits, observe/guardrail/fail-closed modes
  • Focus: policy language design, enforcement mechanics, integration with Clawdstrike guards

9. Ecosystem Integrations

  • Ecosystem Integrations — OpenAI/Claude/OpenClaw/trycua adapter strategy
  • Focus: canonical contract first, provider translators, parity fixtures, fail-closed adapter drift handling

Status

Topic Status Last Updated
Browser Automation Pass #12 Execution Artifacts + Harness-Validated 2026-02-18
Remote Desktop Pass #18 Release-Gate Validation In Progress (matrix harness + restore hardening complete; long-run host validation pending) 2026-02-19
Input Injection Pass #18 Release-Gate Validation In Progress (soak harness timeout + determinism hardening complete; 6-24h run pending) 2026-02-19
Session Recording Pass #12 Execution Artifacts + Harness-Validated 2026-02-18
Attestation & Signing Pass #12 Verification Bundle (D2) + Harness-Validated 2026-02-18
Orchestration Pass #12 Execution Artifacts + Harness-Validated 2026-02-18
Receipt Schema Pass #11 Envelope Equivalence (C3) + Harness-Validated 2026-02-18
Policy Engine Pass #17 Runtime Hardening Complete; Pass #18 Production Gate Validation In Progress 2026-02-19
Ecosystem Integrations Pass #17 Runtime Hardening Complete; Pass #18 Production Gate Validation In Progress 2026-02-19

Program status: Pass #17 implementation remediation is complete. Pass #18 release-gate validation is now the active blocker set: signed/notarized artifact verification, sustained 6-24h soak execution, full Windows/Linux side-channel host validation evidence, and closure of remaining PR review threads.