Cost ceilings & approval
Current paid operations expose a maximum-charge requirement or request-time pricing model. Approval remains a separate caller boundary.
Security / authority boundary
Security on this site means specific implemented or contract-bound controls with visible limitations. It does not mean a certification badge, audit opinion, or compliance status that Clervo has not published evidence for.
Control surface
A control can be live-bound, directly verified, bounded but incomplete, unresolved, or explicitly not claimed. Those states are not interchangeable.
Current paid operations expose a maximum-charge requirement or request-time pricing model. Approval remains a separate caller boundary.
A public operation-level read/write/irreversible classification is not bound across the current catalog. This page does not invent one.
Observed routes expose supply-family identity and lifecycle. Internal route policy and supplier-rights evidence are not published here as a security certification.
The canonical sandbox.run contract states pinned gVisor execution, denied network access, strict resource ceilings, cleanup, receipt, and replay semantics.
The owner-funded Search proof verified same-result replay without a second authorization, execution, or charge.
Unknown settlement is represented as a recovery state that prohibits retry until reconciliation.
Generated observations retain source, generator, timestamp, release identity, lifecycle, and proof level rather than hand-written status claims.
No SOC 2, ISO 27001, penetration-test result, independent security audit, bug bounty, or compliance certification is claimed on this surface.
Claims ledger
The page names the strongest available evidence source beside each claim and leaves missing assurance missing.