AgentsMedium impactFor DevGitHub AI Agents · May 18, 2026

A capability-based operating layer for long-running autonomous software engineering agents. Rust daemon, signed capabilities, append-only audit, drift-aware memory, fail-closed sandbox dispatch, commit-scoped provenance.

open-covenant/covenant

Open-covenant is a Rust-based capability-driven operating layer designed for long-running autonomous AI software engineering agents with secure auditing and sandboxing features.
Signal strength3.9/5·6 stars

Open-covenant is a Rust-based capability-driven operating layer designed for long-running autonomous AI software engineering agents with secure auditing and sandboxing features.

TL;DR

Open-covenant is a Rust-based capability-driven operating layer designed for long-running autonomous AI software engineering agents with secure auditing and sandboxing features.

What happened

The project open-covenant was released as a Rust daemon providing a capability-based OS layer that supports autonomous agents, featuring signed capabilities, append-only audit logs, drift-aware memory, sandbox dispatch, and commit-scoped provenance.

Why it matters

This infrastructure supports safer and more reliable operation of long-running autonomous AI agents by providing auditable, secure, and consistent execution environments, which is critical for trustworthy AI software engineering automation.

Generating deep dive...

AI-powered analysis takes a few seconds