Exact scope
Compare planned authority with the actual Git change, including unexpected protected files.
Use any coding agent. Sentaryn is being built to independently evaluate scope, policy, sensitive changes, and required evidence around AI-generated software changes.
Unauthorized scope expansion detected. Passing tests is not the same as staying authorized.
An AI-generated pull request can be functionally correct and still exceed its intended scope. The PR Gate product direction is to compare requested authority with the observed Git diff, then evaluate required evidence and policy before producing an explainable decision.
Start from the task, repository identity, and authorized scope for the change.
Evaluate unexpected paths, protected files, and scope expansion against the observed repository change.
Tests, scans, approvals, and verification rules must produce evidence tied to the exact change.
Output a concrete allow, approval, block, or not-verified result with a clear reason.
Keep the same authority model across Codex, Claude Code, Cursor, Copilot, internal agents, and whatever comes next.
Compare planned authority with the actual Git change, including unexpected protected files.
Sensitive changes can require specific tests, scans, approvals, or verification before proceeding.
Every allow, approval, block, or not-verified outcome should have a concrete reason.
Keep the same governance model above today’s coding agents and tomorrow’s tools.
Shadow Mode is designed for early teams to evaluate Sentaryn against real repository changes without enabling merge enforcement. The pilot should measure useful catches, false positives, and policy fit before any future required-check integration is considered.
The Change Passport is the evidence object behind the developer experience: request, repository identity, authorized scope, observed change, sensitive systems, required verification, policy, and final decision.
Sentaryn’s public Trust Center documents what is implemented today, what is planned, and how governance decisions are meant to remain constrained, inspectable, and fail-closed.
Grant only the repository, resource, command, or verification authority needed for the governed operation.
Missing authority or missing verification remains missing — it is not silently converted into a pass.
Decisions should be understandable by developers, reviewers, security teams, and later auditors.
Security pages distinguish implemented controls from planned capabilities instead of promising absolute security.
We are preparing a small design-partner program for AI-heavy software teams. The first pilots will focus on Shadow Mode, real repository scope, verification evidence, and developer friction.
Sentaryn is in active product development. Public security and product claims are limited to capabilities documented in the Trust Center.