Fail-safe policy gate for OpenClaw marketplace skills. Intercepts tool calls before execution and checks them against your Authensor policy. Low-risk actions run automatically. High-risk actions require your approval. Dangerous actions are blocked. Only action metadata is sent to the control plane — never your files, API keys, or conversation content.
Add code-level enforcement hook (authensor-gate.sh) — bypass-proof PreToolUse hook with deterministic classification and redaction. Two-tier enforcement model.