Evidence CodeMarine can inspect
- Resulting workspace code and configuration
- Dependencies, skills and MCP configuration added to the project
A provider adapter exists. Managed installation and verified protection are still being completed.
Coverage is stated per surface. Native provider security remains a complementary layer.Provider versions, host configuration and remote execution mode can change effective coverage.
This profile distinguishes workspace observation from pre-execution control. An observed effect is not evidence that the original action was prevented.
Provider permissions, sandboxes and security review remain useful. CodeMarine adds one deterministic policy and evidence model around the workspace used by this provider and the rest of your stack.
Controls the surfaces and execution modes owned by the provider.
Secures resulting code, software supply chain and supported actions under one control model.
The target product state requires the right adapter, current configuration, workspace identity, healthy decision path and a matching live-host proof.
The live canary does not exist yet. Current adapters must remain Setup needed or Beta until host invocation can be proven.
InstallPlace the supported adapter and configuration.
VerifyCheck version, integrity and workspace binding.
ProveRun a harmless nonce-bound canary through the real host.
MaintainExpire proof when the host, policy or configuration changes.
Map the current workspace, provider paths and limits before deciding which controls to rely on.