16.0Breakglass

Emergency access without invisible exceptions.

When operations require an emergency override, Xybern issues a time-limited breakglass authorisation with mandatory justification and full provenance. The exception is controlled, not hidden.

Time-limited by design

16.1

A breakglass grant exists only for a defined window and expires on its own, so an emergency never becomes standing access.

  • Bounded to a defined window
  • Expires automatically
  • No permanent bypass
Time-limited by design

Justified and recorded

16.2

Every breakglass use requires a stated reason and is sealed to the vault, so the exception is fully accountable.

  • Mandatory justification
  • Sealed with full provenance
  • Reviewable after the fact
Justified and recorded

Still under control

16.3

Breakglass runs through the same layer, so even an override is scoped and revocable rather than a blank cheque.

Still under control

More in Tool & Runtime Security.

Related capabilities on the same authorisation layer. Every one is enforced before an action runs and sealed to the Provenance Vault.

1.0MCP & Tool Security

Decide which agent may call which tool.

Learn more
2.0AI Gateway

Authorise every model call.

Learn more
3.0Runtime Containment

Contain or kill any agent, instantly.

Learn more
4.0Temporal Windows

Authority that only exists when it should.

Learn more

See Breakglass in your workflow.

Put one workflow behind Xybern and watch every agent action authorised, and sealed to the vault.