Keep moving.
An expected supported operation proceeds without a human interruption.
src/checkout.tsArgos sits between autonomous coding agents and consequential changes, allowing expected work, holding uncertain actions, blocking protected operations, and independently checking the final result.
Codex 0.143.0 alpha / Supported apply_patch operations
src/payments.tsALLOWExpected scope / Authorized operation executes.
Sample operations. No repository is connected.
01/ 07
Fix the checkout timeout. Keep authentication unchanged. The human defines the work before the agent begins.
src/checkout.tsREVIEW src/config.tsPROTECTED src/auth/session.tsIllustrative lifecycle. Only instrumented operations cross this boundary.
02 / Control before mutation
EXPECTED, REVIEW, and PROTECTED are Task-relative scope. ALLOW, REVIEW, and BLOCK are the decisions at the execution boundary.
An expected supported operation proceeds without a human interruption.
src/checkout.tsHold the operation before mutation. A separate human identity makes the decision.
src/config.tsThe proposed operation cannot execute through the controlled boundary.
src/auth/session.tsInteractive illustrations only. No repository is connected. Argos controls supported, instrumented operations, not every action on your machine.
03 / Inside a controlled session
One Task, three proposed changes. Run the example and make the human decision when shared configuration needs review.
$ argos runExample paused.
04 / Execution is not verification
The agent says Task complete. Execution is recorded. Then an independent check fails. Argos preserves all three facts instead of turning a successful patch into a successful Task.
Execution / recorded
EXECUTED ≠ VERIFIED
The patch ran. Did the declared engineering outcome actually happen?
A focused test failed. Execution remains recorded. No automatic repair.
Deterministic verification proves the declared contract, not broad semantic business intent. Ambiguous execution remains unresolved instead of being retried blindly.
05 / The execution record
The request, the authority, the attempted change, the human decision, and the checked result. Connected to one Task.
Keep authentication unchanged. Run the declared checks.
src/checkout.tsExecutedsrc/config.tsApproved / executedsrc/auth/session.tsBlocked / not executedReal Task and Evidence links require authentication. Possession of a URL grants no access.
06 / Alongside your existing controls
Native sandboxes, Git, CI, and security tools still have their jobs. Argos adds task-scoped execution control and separate verification at the supported integration boundary.
Separate identities. The agent execution key cannot make a human approval.
Fail-closed launch. Required interception components are checked before the controlled session begins.
Inspect the trust boundary07 / Controlled pilot
The current alpha is founder-assisted. Agree the repository workflow, access, and commercial terms before a pilot begins.
Work with the Argos team to connect a real Codex workflow, define its scope, and inspect the outcome together.
No fixed public package or per-seat price is currently offered.
Start with Codex, one repository, and a boundary you can inspect.