Start with a dossier. Then check skills and MCP evidence. Then validate in your own environment. This page is a checklist. It does not deploy anything for you.
Registry evidence is one input to deployment review. Validate each module in your own CI environment before production use.
Pin dependencies, require reproducible builds, define approval gates, and test rollback before promotion.
Define traces, logs, metrics, budgets, and operator alerts before an agent receives production traffic.
Document credential boundaries, retention, backup, deletion, and recovery behavior for agent state.
Use least privilege, network allowlists, scoped tools, and explicit escalation paths for destructive actions.
Browse registry records, evidence-tier labels, source links, and scanner summaries. Validate every selected component independently.
Available evidence, provenance, and remediation priorities can be reviewed under a written scope. Deployment validation remains your responsibility.
Need human interpretation of repository evidence?
Request a written scope →