astrid-runtime/book
- Source
- GitHub
- First trending
- Category
- Security
- GitHub stars
- 7,458
- Main language
- Perl
This page introduces an external open-source repository. It is not an HDATF product.

What it does
The canonical reference book for Astrid, built with mdBook, covering the kernel, the capsule model, the host ABI, the bus and the security model. Appendices such as the capability catalog are generated from the Astrid source.
How it helps ATF
A reference for Astrid's capability and security model. It could help when comparing how the ATF Works assistant stays within each person's permissions.
License
Apache-2.0 Permissive, with a patent grant. Commercial use is allowed; keep the notices and state your changes.
More in this category
- astrid-runtime/astrid
A portable runtime, heading toward a standalone operating system, that runs WebAssembly capsules in a sandbox on macOS and Linux. Capsules talk through typed interfaces, and file, network, process and IPC access is checked at runtime boundaries. - simplex-chat/simplex-chat
SimpleX Chat is a messaging network with apps for iOS, Android and desktop that works without user identifiers of any kind, aiming to keep communication private by design. - usestrix/strix
Strix runs AI agents that test an application the way attackers would: they execute the code, look for vulnerabilities and confirm them with working proofs of concept. It offers a CLI, multi-agent orchestration, suggested patches, reports and CI/CD use. - NVIDIA/SkillSpector
SkillSpector scans AI agent skills for Claude Code, Codex and MCP before installation. It looks for vulnerabilities, malicious patterns, prompt injection, data exfiltration and supply-chain risks in Git repos, URLs, zip files or directories. - openai/codex-security
Codex Security is a CLI and TypeScript SDK from OpenAI for defining security policy and for finding, validating and fixing vulnerabilities in code. It can also draft a SECURITY.md to guide later scans.
Only repositories in the ranked Trendshift lists are included, and the lists are used only to find candidates. We do not copy their ranks. Descriptions, licenses and star counts come from each GitHub repository. The notes are our own reading. We have not tested these projects, and a place on a trending list does not prove quality.