Repository navigation
ExecSurface v0.1.0-alpha.1
Pre-releaseExecSurface v0.1.0-alpha.1
First public alpha of AETHER X ExecSurface.
What this release is
ExecSurface detects observed runtime execution-surface drift between an accepted baseline and a later run.
Public alpha support is intentionally narrow:
- Linux
- x86_64
- native ptrace reference observer
- GitHub Actions integration
Included
- metadata-only runtime observation;
- descendant process execution effects;
- fd-attributed file read/write evidence;
- network destination evidence;
- deterministic canonical surfaces;
- content-addressed baseline lock;
- deterministic diff;
- independent policy layer;
- PASS / REVIEW / BLOCK / ERROR;
- GitHub composite Action;
execsurface doctor;execsurface init;- v2 evidence contracts.
Security boundary
ExecSurface does not prove a program is safe.
Observed behavior is not all possible behavior.
No observed network activity is not proof that network access is impossible.
Observer completeness remains part of the evidence contract.
Install integrity
The GitHub Release publishes:
- a Linux x86_64 archive;
- a SHA-256 checksum;
- GitHub build provenance attestation.
Attestation links an artifact to its build source/workflow. It is not a claim that the artifact is safe.
Source commit: d6919e2b3e23b196965bc7bba87598f09265599f
Build workflow: https://github.com/AETHERXGLOBAL/execsurface/actions/runs/36194046171
Release archive digest: sha256:e03a4e6852404992eb8d6d9347dd32f168c91528acad52b16ae328e629a30753