Tool & Runtime Security

Breakglass

Emergency access without invisible exceptions.

When operations require an emergency override, Xybern issues a time-limited breakglass authorisation with mandatory justification and full provenance. The exception is controlled, not hidden.

Time-limited by design

A breakglass grant exists only for a defined window and expires on its own, so an emergency never becomes standing access.

  • Bounded to a defined window
  • Expires automatically
  • No permanent bypass

Justified and recorded

Every breakglass use requires a stated reason and is sealed to the vault, so the exception is fully accountable.

  • Mandatory justification
  • Sealed with full provenance
  • Reviewable after the fact

Still under control

Breakglass runs through the same layer, so even an override is scoped and revocable rather than a blank cheque.

More in Tool & Runtime Security.

Related capabilities on the same authorisation layer. Every one is enforced before an action runs and sealed to the Provenance Vault.

1.0MCP & Tool Security

Decide which agent may call which tool.

Learn more
2.0AI Gateway

Authorise every model call.

Learn more
3.0Runtime Containment

Contain or kill any agent, instantly.

Learn more
4.0Temporal Windows

Authority that only exists when it should.

Learn more

See Breakglass in your workflow.

Put one workflow behind Xybern and watch every agent action authorised, and sealed to the vault.