🔒Default-Deny SecurityEvery agent step declares allowed tools, executables, MCP servers, network egress, and filesystem roots.
⚡TypeScript-NativeWorkflows are real .ts modules — refactor, test, type-check, version like any other code.
🧩Multi-Backend AgentsOpencode, ACP (Copilot, Claude Code, Gemini), OpenAI, Anthropic, Pi — provider SPI for custom ones.
🌐MCP-NativeModel Context Protocol servers are first-class registry citizens, lifecycle-managed by the gateway.
💾Local-FirstSQLite by default; Postgres + vault drivers for production. No managed cloud, no telemetry.