Docs
The governance runtime for AI agents.
Run any framework, locally by default. Every decision leaves a portable receipt that verifies without Aarmos running.
Three scripted scenarios in the browser. Allow, deny, and an invariant refusal — with a signed receipt.
Start →15 minutesInstall the CLI, wire up one framework, produce a receipt, verify it offline.
Start →ProductionPolicy authoring, key custody, SIEM export, incident replay, and the 30-minute pilot.
Start →Start
Get running
60-second quickstart
Install the CLI, run an agent across three protocols, verify the receipt with the daemon stopped. The whole story on one page.
PWA usage guide
Walkthrough of the on-device app itself — install to home screen, unlock the vault, wire your first connector.
Ask Aarmos
Have a specific question? Type it and get an instant answer from the help KB — no LLM key, no sign-in.
Learn — Why
Why a governance runtime
For when governance-as-a-category is new.
Why governance
Governance is not logging. Why replay, evidence, vendor-neutrality, and local-first each matter — and what breaks without them.
The agent lifecycle
How Build and Run sit on a governance runtime that produces proof by construction — not a four-stage checklist.
Learn — Govern
Govern before execution
The policy gate
Microsecond-scale allow / ask / deny on-device.
Decision governance
Name the business action, bind its participants, record the verdict.
Delegation bounds
Depth, allowlist intersection, budgets.
Kill switch & grace
Panic stop and expiry semantics.
Actions & resources
The vocabulary policies and receipts use.
Learn — Run
Run any framework, locally
One agent, every tool. Aarmos brokers whatever protocol the tool speaks — MCP, OpenAPI, deep-link, A2A, Bearer.
Learn — Prove
Prove every decision
That decision stream is also what Operations reads to turn governed execution into understanding and improvement. Explore Operations
Do
How-tos
Task-based walkthroughs — one job per page. Start with the 60-sec demo → then add a provider and a connector.
All how-tos
See it work · 15 seconds, then 10 short walkthroughs for the app and CLI.
Reference
Install, CLI, adapters, specs, errors
Get Aarmos — install page
Standalone download page with copy-paste commands for macOS, Linux, and Windows — plus the standalone avar verifier. Lives at /install so it is easy to share from CTAs.
CLI reference
Every @aarmos/cli command grouped by task: set up, run under policy, author policy, prove, and operate.
MCP adapter
Wrap a Model Context Protocol server; Aarmos routes tool calls through your local policy gate.
OpenAPI adapter
Point Aarmos at any REST endpoint by URL. Scopes, dry-run, and receipts apply automatically.
Deep-link / webhook adapter
Broker non-standard actions — URL schemes, outbound webhooks, custom transports — under the same policy runtime.
AVAR spec
Ed25519-signed, hash-chained, open and unencumbered. Verifies with the standalone avar binary.
ASP (Policy-as-Code) spec
YAML authoring, CLI (lint/test/compile), and the specification.
Concept index
All concepts on one page.
Error codes
Every denial the policy gate can emit — kill-switch, delegation, budget, step-cap, rate-limit — with meaning, causes, and the exact fix.
FAQ
Troubleshooting and common questions — vault, providers, backups, CLI, playbooks, receipts, and rate limits.
Operate
Runbooks & deployment
aarmos doctor
One-screen runtime health check — WebCrypto, storage, service worker, policy gate, kill-switch, ledger anchor, clock skew.
Bring Your Own Storage (BYOS)
Encrypted-file token store for headless / server deployments. AES-GCM + PBKDF2, mandatory conformance suite, drop-in adapter interface.
Self-managed endpoint
Point Aarmos at your own inference endpoint or gateway.
License signing key rotation
Rotate the license signing key without breaking past receipts. Continuity guarantees, exact steps, rollback.
Authority key rotation
Rotate the Ed25519 key backing an aarmos://authority URI. Stable URI preserved, monotonic sequence, subscriber re-pin.
Category education
Aarmos Field Guide
Still stuck? Contact support — we read every message.