AI Worker worker.md

cordum

The action firewall for AI agents. Enforce policy and human approval before risky tool calls, shell commands, workflows, and production changes, with auditable evidence.

Tool registry 494 stars Go NOASSERTION Worker-compatible

Source#

  • Repository: cordum-io/cordum
  • Last source update: 2026-08-15
  • Last verified: 2026-08-16

Tags#

agent-frameworkagentic-aiai-agentai-governanceai-orchestrationai-safety

Integration notes#

Repository is focused on tool/server interoperability; wrap in bounded worker contracts for production use.

worker.md example#

Starter worker.md contract mapped from this registry entry. Copy this file and adapt schemas, constraints, and statuses for your task.

---
id: cordum-repo-derived-worker
name: cordum Repo-Derived Worker
version: 1.0.0
source_registry_url: https://worker.md/registry/cordum/
source_repository: https://github.com/cordum-io/cordum
repository_default_branch: main
repository_language: Go
repository_license: NOASSERTION
repository_updated_at: 2026-08-15
worker_mode: agent-orchestration-worker
derivation_method: github_repository_metadata_plus_raw_readme
derivation_confidence: 0.95
derived_on: 2026-08-16
tags:
  - agent-framework
  - agentic-ai
  - ai-agent
  - ai-governance
  - ai-orchestration
  - ai-safety
---

# cordum Repo-Derived Worker

## Repo-derived summary
- Registry summary: The action firewall for AI agents. Enforce policy and human approval before risky tool calls, shell commands, workflows, and production changes, with auditable evidence.
- Repository description: The action firewall for AI agents. Enforce policy and human approval before risky tool calls, shell commands, workflows, and production changes, with auditable evidence.
- Stars (snapshot): 494
- Primary language: Go
- Worker mode classification: agent-orchestration-worker

## Extracted from
- https://github.com/cordum-io/cordum
- https://github.com/cordum-io/cordum/blob/main/README.md
- https://artifacthub.io/packages/helm/cordum/cordum
- https://github.com/cordum-io/cordum/pkgs/container/cordum%2Fapi-gateway
- https://hub.docker.com/r/cordum/api-gateway

## Evidence notes (from repository text)
- README summary paragraph: Know What Your AI Agents Are Doing. Before They Do It. The Source-Available Agent Control Plane for Governance, Safety, and Trust. Includes Cordum Edge — a Compliance Firewall for Claude Code and other local AI-agent actions.
- Know What Your AI Agents Are Doing. Before They Do It.
- The Source-Available Agent Control Plane for Governance, Safety, and Trust.
- Includes Cordum Edge — a Compliance Firewall for Claude Code and other local AI-agent actions.
- | **Just want to try it?** | `./tools/scripts/quickstart.sh` — one-command install from source (Option A below) |
- kernel, workflow engine, context engine, dashboard, NATS, and

## Installation hints found in README
- `pip install cap-sdk-python`) | [**Node**](https://www.npmjs.com/package/cap-sdk-node) (`npm install cap-sdk-node`)`
- `npm install cap-sdk-node`)`

## worker.md contract (derived starter)
Purpose: Execute one orchestrated agent task as a bounded worker step.

### Input schema
```json
{
  "type": "object",
  "additionalProperties": false,
  "required": [
    "run_id",
    "task",
    "context"
  ],
  "properties": {
    "run_id": {
      "type": "string"
    },
    "task": {
      "type": "string"
    },
    "context": {
      "type": "object"
    }
  }
}
```

### Output schema
```json
{
  "type": "object",
  "additionalProperties": false,
  "required": [
    "run_id",
    "status",
    "result"
  ],
  "properties": {
    "run_id": {
      "type": "string"
    },
    "status": {
      "type": "string",
      "enum": [
        "ok",
        "retryable_error",
        "invalid_request",
        "invalid_output"
      ]
    },
    "result": {
      "type": "object"
    }
  }
}
```

### Constraints
- timeout_seconds: 30
- max_attempts: 2
- idempotency_key: run_id
- status_enum: [ok, retryable_error, invalid_request, invalid_output]
- notes: adapt to concrete APIs/classes documented in this repository before production use

## How this should be used
1. Treat this file as a repo-derived starter profile, not a claim of an official repository API contract.
2. Replace schemas with exact interfaces from code/docs you adopt.
3. Keep execution bounded and auditable using worker protocol constraints.

How to use#

  • Save this as a worker spec file (for example: cordum-my-task.worker.md).
  • Replace the input/output schemas and purpose with your real bounded task.
  • Enforce schema validation + timeout + retry policy in your runtime before production use.

Citation#

Reference URL: https://worker.md/registry/cordum/

Source URL: https://github.com/cordum-io/cordum