Defense primes and programs
CUI, human authorization, flow-down, ITAR where export applies
- What the reviewer asks for
- A person authorized the action, the log is tamper-evident, and an outsider can verify it.
- What ICA hands them
- A named human authorization on each consequential action inside the program enclave, a tamper-evident chain, and verification that runs air-gapped.
- Where to start
- One program enclave.The program accepts the human-authorization record: yes or no.
- Beside what you run
- ICA's verifier runs offline with the keys inside the bundle, so the proof lives inside the boundary the program names.