ForgeLayer

Private beta control flow · deterministic preview

Control AI software work from task intake to human decision.

One controlled journey from software task to human decision and traceable Ledger preview.

Task → AgentOS → draft Work Record → Review Run → MergeGuard → verification → browser-local human decision → derived Ledger preview.

Step 1 · Task intake

Choose a controlled demo task

Changing the task resets the local approval decision. Nothing is saved or sent.
local state only

Guided stage tracker

One journey, explicit control state

Every stage names its source, maturity, human requirement, and current status.
01complete

Task

Review and harden payment webhook signature verification, replay protection, tests, and rollback evidence before merge.

Source
Control Flow
Control
deterministic input
Maturity
live
Human action
required
02complete

Capability

Classify work types and required capabilities.

Source
AgentOS
Control
recommendation only
Maturity
live
Human action
not required
03complete

Agent

GitHub Copilot is the proposed primary profile; no agent is executed.

Source
AgentOS
Control
no agent executed
Maturity
live
Human action
required
04complete

Work Record

Record proposed scope, evidence, risk, and blocked actions.

Source
Agent Work Records
Control
draft record only
Maturity
draft
Human action
required
05complete

Review

Create a safe review summary from deterministic demo context.

Source
Review Runs
Control
preview data
Maturity
simulated
Human action
not required
06complete

MergeGuard

Derive risk, evidence requirements, and merge guidance.

Source
MergeGuard
Control
recommendation only
Maturity
simulated
Human action
required
07complete

Verification

Show draft or simulated evidence state.

Source
Review Runs
Control
not production evidence
Maturity
simulated
Human action
required
08current

Approval

Awaiting human approval

Source
Human control
Control
local decision only
Maturity
draft
Human action
required
09waiting

Ledger

Derive a non-persistent record of the controlled journey.

Source
AI Work Ledger
Control
persisted: false
Maturity
draft
Human action
not required

Connected module output

Secure a payment webhook

Secure a payment webhook routes to GitHub Copilot, creates a draft Work Record, receives a HIGH MergeGuard assessment, and awaits a local human decision. The Ledger preview is derived, non-persistent, and cannot execute or merge work.
persisted: false

AgentOS recommendation

GitHub Copilot

preview

Recommendation only. ForgeLayer is not executing this agent or giving it repo access.

Detected worktest_generation, code_review
Primary confidence60%

Supporting agents

  • Generic Review Agent · 60%
  • Codex · 45%

Routing risks

  • This is a draft routing plan only; no agent has executed work.

Draft Agent Work Record

Secure a payment webhook

preview

GitHub Copilot work record is proposed. Detected work: test_generation, code_review. Evidence: 3. Risks: 3. Approvals: 0. Human review required: yes. Merge readiness: not_ready.

Record IDagent_work_775b12a5
Statusproposed
Merge readinessnot_ready

Blocked actions

  • Execute an agent automatically.
  • Auto-merge or approve code automatically.
  • Post to GitHub automatically.
  • Run commands automatically.
  • Grant repository access automatically.
  • Share secrets or credentials.

Review Run

flow_review_secure_payment_webhook

preview

Secure a payment webhook has 3 safe evidence signals and 3 risk signals.

RiskHIGH
Statusneeds_manual_review
Verificationneeds_review

Evidence

  • Webhook test plan drafted
  • Protected payment path matched
  • Security review required

MergeGuard decision

merge after changes

preview

Browser-local simulation: A human chooses approve, request changes, or block before the flow can conclude.

RiskHIGH
Policy approval requirementdefined

Safety controls

  • No automatic merge behavior.
  • GitHub posting is disabled by default.
  • No live agents or autonomous workflows.
  • Generic platform guidance: Human approval is required before merge.
  • GitHub Checks and PR comments remain preview-only in this surface.

Current Approval Authority

blocked platform

preview

Approval requirement satisfied. Repository verification has not run. Execution transport is disabled. Dispatch remains disabled.

Approval requirementsatisfied

Remaining blockers

  • Repository verification has not run.
  • Execution transport is disabled.
  • Dispatch remains disabled.

Verification

needs review

preview

Verification may be simulated or derived. It is not a production test attestation.

Production evidencefalse

Evidence signals

  • Webhook test plan drafted
  • Protected payment path matched
  • Security review required

Derived Ledger preview

Secure a payment webhook

preview

GitHub Copilot work record is proposed. Detected work: test_generation, code_review. Evidence: 3. Risks: 3. Approvals: 0. Human review required: yes. Merge readiness: not_ready.

Ledger IDledger_agent_work_775b12a5
Persistedfalse
Browser-local request statepending
Explore AI Work Ledger

Local approval simulation

Make the human decision explicit

This choice updates only the in-memory preview. It causes no API side effect, repository action, posting, execution, or persistence.
Awaiting human approval
Browser-local request stateAwaiting human approval

Browser-local instruction: A human chooses approve, request changes, or block before the flow can conclude.

Local only · persisted: false · execution disabled · GitHub posting disabled

Control principles

The journey remains bounded

01

AgentOS output is recommendation only; no agent is contacted or executed.

02

Work Records and approval decisions are draft, local, and non-persistent.

03

Review and verification data is deterministic, derived, or simulated.

04

Human approval is required before work is trusted, merged, or used.

05

No repository access, external calls, GitHub posting, automatic merge, or production persistence is enabled.

06

The Ledger output is derived and always reports persisted: false.

Authority boundary

A local decision is not a durable authorization grant.

The Approval Authority foundation is the current effective authority source. It evaluates exact scope, immutable references, expiry, staleness, revocation, and kill switches server-side; this local decision never replaces it. Execution transport remains disabled.