Mind Chill
    Good Proof™by Mind Chill®
    HomeHow It WorksSectorsNewsMind Chill GuardiansPricing
    Book Sprint
    Mind Chill
    Good Proof™by Mind Chill®

    Contract-referenceable verification for high-impact AI actions. Scope-bound, expiry-aware, and human-final when it matters.

    Sales: [email protected]Security: [email protected]Support: [email protected]

    UK

    Mind Chill Nootropics Ltd

    09667911

    Singapore

    Mindchill Research Pte. Ltd.

    202544340Z

    A division of

    Mind Chill — Department of Human Defense

    Not a certification. Scope-limited verification. Acceptance depends on counterparty/programme requirements.

    Product

    • Good Proof Stamp
    • Stamp Spec
    • IDA Evidence Pack
    • How It Works
    • Verify API
    • Guardians
    • Pricing

    Solutions

    • Sectors
    • Specimens
    • Verify a Stamp
    • AI GOLD
    • Trust Metrics
    • RegTech
    • Security Automation

    Safeguards

    • Kill Switch
    • Agentic Security
    • Clause Pack
    • Coverage Reports
    • Portability & Data Rights

    Company

    • Book a Stamp Sprint
    • Advocate Partners
    • Partner Program
    • News
    • Leadership
    • Trust & Security
    • Official Domains

    © 2026 Good Proof by Mind Chill. All rights reserved.

    PrivacyTermsCookiesSecurityContactFAQStatusOfficial
    Book an Agentic Gate Sprint
    Agentic Security - Fail-closed gates for high-impact agent actions
    Agentic Security

    Agent Goal Hijack is why "No Stamp → No Ship" exists.

    For high-impact agent actions, Good Proof enforces an externally verifiable, fail-closed gate using a revocable Status Link.

    Assume compromise; limit blast radiusExternally verifiable stop-relyAudit-ready gating evidence
    Book an Agentic Gate SprintSee stamped specimens

    Not a certification. Scope-limited verification. Downstream acceptance depends on counterparty/programme requirements.

    Threat Model in 60 Seconds

    1
    Indirect prompt injection: malicious instructions in documents, emails, or web content
    2
    Goal hijack / instruction-data confusion: objective subtly redirected (confusable deputy)
    3
    Tool misuse + permission escalation: execution beyond intended scope or privileges
    4
    Connector/plugin supply-chain risk: compromised third-party integrations
    5
    Long-horizon steering: multi-step workflows manipulated across conversation turns
    6
    Exfiltration via tool calls: tokens, secrets, or outputs leaked through connectors

    Why Gates Beat Guardrails

    Guardrails reduce risk—they do not guarantee prevention.

    High-impact actions require a machine-checkable, revocable external gate.

    Status Link = control object for reliance.

    Is This a Fit?

    Best fit

    • High-impact agent actions (denials, transfers, overrides, closures)
    • Teams needing stop-rely + external verifiability

    Not fit

    • Low-risk chat-only copilots
    • Teams seeking prompt tuning without execution control

    Enforcement Flow

    1
    Agent requests high-impact action
    2
    Gate verifies Status Link from official verifier
    3
    Policy evaluates status + scope + expiry + freshness
    4
    Execute only if VALID; else block/escalate
    5
    Log Gate Decision + evidence fields

    Status Definitions

    VALIDDecision verified, within scope, not expired—proceed
    NEEDS_REFRESHRe-verification required before reliance
    WITHDRAWNReliance stopped—block immediately
    EXPIREDPast expiry threshold—treat as non-reliance
    NOT_VERIFIEDVerification failed—block or escalate

    Treat NEEDS_REFRESH as non-reliance for high-impact execution unless programme policy explicitly routes to review.

    Failure Semantics

    ConditionReturned StateDefault Action
    Timeout / network unreachableNOT_VERIFIEDBlock/Escalate
    TLS / certificate failureNOT_VERIFIEDBlock/Escalate
    Domain mismatch / redirectNOT_VERIFIEDBlock/Escalate
    Malformed / unauthenticated responseNOT_VERIFIEDBlock/Escalate
    WITHDRAWN status returnedWITHDRAWNBlock + stop-rely
    NEEDS_REFRESH status returnedNEEDS_REFRESHEscalate/Review
    VALID but out-of-scope / expiredNOT_VERIFIEDBlock/Escalate

    What Good Proof Does (and Doesn't)

    Does

    • Hard gate for high-impact actions — No Stamp → No Ship. Agents cannot proceed without a valid Status Link.
    • Stampable permission boundaries — Agent permissions become a control object with live status—not just a config file.
    • Live Status revocation — Revocation is immediate at source. Enforcement is bounded by verify-per-action/TTL.
    • Guardian exception review — When edge cases arise, scoped human finality—not blanket AI overrides.

    Does NOT

    • Prompt injection detection or scanning
    • Guarantee secure or compliant system
    • Replace red team, pentest, or security program
    • Real-time behavior monitoring

    Evidence Pack Minimum Fields

    Designed for incident response, audit, disputes, and underwriting review.

    stamp_id
    action_class
    decision
    status
    verified_at
    expires_at
    verifier_domain
    signer
    version
    request_id
    reason_code
    failure_mode

    Where This Fits

    Compensating control, not replacement.

    Works alongside:

    Least privilege and role-based access
    Sandboxing and execution isolation
    Egress controls and network segmentation
    Secret management and credential rotation
    Red teaming and adversarial testing
    Monitoring and logging

    Control Mapping

    SOC 2:Logical Access, Change Management, Monitoring, System Operations
    ISO 27001:Access Control, Communications Security, Logging/Monitoring, Supplier Relationships
    NIST:AC (Access Control), AU (Audit), CM (Configuration), SC (System/Comms), SI (System Integrity)

    Mapping only; not a certification claim.

    Procurement Fast-Path

    "High-impact [ACTION_CLASS] SHALL require a valid externally-verifiable Status Link (No Stamp → No Ship)."

    See /kill-switch for enforcement semantics and /clause-pack for template language.

    Responsibilities

    Buyer

    Defines action classes, runs gate, enforces fail-closed

    Supplier

    Issues Stamps, maintains Status Links, propagates refresh/withdrawal

    Guardians

    Exceptions/appeals only, scoped human finality

    Good Proof

    Agentic Gate Sprint (30 Days)

    One lane live with fail-closed enforcement, Status Link verification, and Evidence Pack output.

    1
    ScopeHigh-impact action classes + success criteria
    2
    IntegrateGate checks + logging infrastructure
    3
    DrillsTimeout/TLS/domain/malformed + refresh/withdrawal tests
    4
    DeliverGo-live report + rollout plan

    Definition of done: Selected workflow blocks on status ≠ VALID for chosen action class.

    Book an Agentic Gate SprintSee stamped specimens

    Risk Reduced vs Out of Scope

    Risk reduced

    • Unbounded blast radius
    • Unverified high-impact execution
    • Stale authorization
    • Missing decision-time evidence

    Out of scope

    • Model correctness/quality
    • Blanket compliance certification
    • Insider abuse/infrastructure posture
    Mind Chill Guardians
    Mind Chill Guardians

    Mind Chill Guardians

    Human finality for exceptions/appeals only
    Conflict-checked independent review
    Multi-review thresholds for high-risk lanes
    Auditable traceability with minimal disclosure
    Learn more about Guardians

    Ready to gate high-impact agent actions?

    Start with one decision class. Prove verification. Then scale.

    Book an Agentic Gate SprintSee stamped specimens

    Scope-limited verification. Not a certification.