Runtime operations
Put platform boundaries around each operating agent.
Cuttlefish gives platform teams an explicit operating boundary for runtime identity, environment access, provider assignment, connector authority, change control, retained state, and recovery. Existing systems stay in place; manifests and governed capabilities define how agents may interact with them.
Runtime and environment governance
Each runtime is bound to a user, organization, agent, active policy, model route, and set of approved capability targets rather than inheriting broad ambient access.
Provider and connector control
Teams approve available model routes and compile connector operations into classified capabilities with explicit read, prepare, approval-required, or blocked behavior.
Change control
Consequential operations pause with target and effect context. Approval and execution grants remain narrow, attributable, revocable, and connected to the resulting record.
Operational evidence
Runs, signed governance receipts, source and outcome evidence, artifacts, and proof-completeness state support review without replacing logs, traces, or existing observability.
Recovery and lifecycle
Runtime state, event history, pending work, and workflow records are retained so interruption is detected and recovery follows an explicit replay, repair, pause, or resume path.
Current-infrastructure fit
Repositories, CI/CD, cloud control planes, clusters, observability, ticketing, and internal services remain systems of record behind the authority boundaries your platform team sets.