Cirvix AgentControl — enforcement engine
Copyright 2026 Umang Kumar, trading as Cirvix

Licensed under the Apache License, Version 2.0 (the "License"); you may not use
this file except in compliance with the License. You may obtain a copy of the
License at

    http://www.apache.org/licenses/LICENSE-2.0

Unless required by applicable law or agreed to in writing, software distributed
under the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR
CONDITIONS OF ANY KIND, either express or implied. See the License for the
specific language governing permissions and limitations under the License.

---

WHAT THIS LICENCE COVERS

This package is the enforcement engine: the policy evaluator, the risk
classifier, the secret detector and handle substitution, the local control
socket, the MCP gateway, the audit chain, the scanner, and the `cirvix` CLI.

It is licensed under Apache 2.0 deliberately. A security control that cannot be
read is a security control you are asked to take on faith, and this is the part
that decides whether a tool call runs. Read it, fork it, audit it, run it in
production without paying anything, and do not ask us for permission.

WHAT IT DOES NOT COVER

The Cirvix control plane — multi-tenant policy distribution, the team vault,
SSO and SCIM, approvals workflow, hosted audit retention and export, compliance
evidence reporting, fleet telemetry and billing — is a separate package under a
separate, proprietary licence. See packages/control-plane/LICENSE.

THIRD-PARTY CODE

There is none. This package has zero runtime dependencies, deliberately and
permanently — a security tool that drags in a transitive dependency tree is
asking to become the supply-chain incident it exists to prevent.

The self-hosted fonts shipped with the Cirvix website (Geist and Geist Mono) are
licensed SIL OFL-1.1 and are not part of this package.
