Evidence first. Claims only as strong as the proof.
Public-sector teams can use the MIT-licensed local core or discuss a bounded, written-scope evaluation with Ashlr AI. The evaluation starts with a named non-production environment and ends with an auditable decision—not a blanket authorization.
Evaluation boundary
Start local. Keep authority explicit.
Phantom is designed to keep provider values out of the managed agent dotenv path. That narrow control does not make the agent, endpoint, network, or organization compliant. Reviewers should evaluate the complete operating environment and the documented same-user authority limitation.
Review the threat modelMinimum evidence packet
- Exact source, version, platform, and installation method
- Named workflow, data boundary, owners, and prohibited actions
- Test commands, results, skipped gates, and unresolved findings
- Separate records for deployment, provider, and user acceptance
Diligence starts here
No implied authorization, certification, or contract vehicle.
Requested controls may be discussed as proposed engineering work. A proposal is not implementation; implementation is not deployment; deployment is not agency authorization or acceptance.