CANDOR TRUST & SAFETY
EN | DE | ES
ARCHITECTURE DEMO — SIMULATED ENGINE

Dual-Agent Defense Engine for the AI in your game

Your players will try to break the AI character or agent in your game. This is the runtime layer that stops them: the in-game agent (the worker) is watched live by an autonomous defense layer — a deterministic guard, a semantic circuit breaker, and a locally-run sovereign safety model — and every decision is sealed into a hash-chained evidence ledger (real SHA-256, computed in your browser right now). Runs on a local model, so your players' conversations never leave your infrastructure. This demo simulates the engine's decision flow; the production system runs live — no third-party AI in the loop.

Attack scenarios

SOC console

Defense pipeline

WORKER AGENT
NORMAL
HOT-SPARE
STANDBY | CLEAN CHECKPOINT
DEFENSE WATCHDOG
AUTONOMOUS | ALWAYS ON
1 | Deterministic guard
CIRCUIT
CLOSED
2 | Semantic circuit breaker
similarity to known attack signatures0.00
3 | Sovereign safety mesh (local model)
4 | Multi-factor risk score
AWAITING REQUEST
Containment state machine
Blast radius on quarantine
tokens_revoked
mcp_sockets_cut
memory_frozen
egress_blocked
Pick a scenario on the left. Every decision you trigger is sealed into the evidence ledger on the right — try “Verify chain” afterwards.

Evidence ledger (hash-chained)

chain: — entries