TEOS Sentinel Shield is a deterministic execution governance layer for autonomous AI, CI/CD pipelines, and critical infrastructure. This repository contains both documentation and the active implementation.
The implementation features a deterministic rule engine with 40+ security rules (R01-R40) covering shell security, secret protection, DoS prevention, code injection, supply chain security, CI/CD hardening, banking/FinTech controls, and DevOps/admin operations.
| Section | Description |
|---|---|
| Whitepaper | TEOS Sentinel overview and architecture |
| Architecture | System architecture, deployment model, design decisions |
| Roadmap | Strategic roadmap |
| Changelog | Release history |
| Security | Security policies and compliance framework |
| ADRs | Architecture Decision Records |
| Runbooks | Operations, recovery, incident response |
| Monitoring | Observability dashboards, alerting, uptime monitoring |
| Checklists | Stability and runtime validation checklists |
TESL v2.0 (TEOS Sovereign License) — governed by the ICBC Constitution.
Full text: LICENSE
This repository contains both documentation and the active implementation of the TEOS Sentinel Shield deterministic rule engine, API gateway, and deployment configurations.