Mickai Subsystem
Mickai Sentinel™
Mickai Sentinel is the subsystem of the Mickai SIOS that sits at the prompt boundary. Every prompt passes through threat-intent classification, every tool invocation passes through a per-skill clearance gate, and every gate decision lands as a signed entry in the Open Audit Record substrate. Mickai is downloadable at mickai.co.uk/download and runs on Windows, Linux, or macOS.
View capabilitiesThe Mickai SIOS
Mickai is a Sovereign Intelligence Operating System (SIOS). It runs entirely on your own hardware, on Windows, Linux, or macOS. No cloud, no telemetry. This page describes one subsystem of the Mickai SIOS. Download Mickai at mickai.co.uk/download.
A subsystem of the Mickai SIOS. Threat-intent detection at the prompt boundary. Per-skill clearance. Voice-biometric gating. Every action passes through Sentinel before it reaches a tool.
The action that did not pass Sentinel did not happen.
What Sentinel does
Seven primitives that turn a prompt boundary into an enforced perimeter. Each gate decision is signed into the Open Audit Record substrate so a regulator can replay the chain and prove which prompt produced which clearance outcome.
01 / Boundary
Threat-intent at the prompt boundary
Every inbound prompt is classified before any brain reads it. A 660-pattern firewall covers prompt injection, jailbreak attempts, exfiltration patterns, and known indirect-injection vectors carried inside retrieved HTML. Indeterminate prompts are quarantined and flagged for the operator.
02 / Clearance
Per-skill clearance gates
Every skill declares a clearance ceiling. A read-only retrieval skill cannot escalate to a write-shell skill without a fresh authority envelope. High-impact tools (filesystem write, shell execution, outbound network) require a fresh voice-biometric utterance at invocation time, not session login.
03 / Voice gate
Voice-biometric gating
Actor identity cannot be supplied by a public reply. Sentinel verifies the speaker against a hardware-bound voiceprint stored in the secure enclave, then signs the gate decision. The voiceprint is never extractable; verification runs on the host.
04 / Audit
Signed gate decisions
Every gate decision (allow, deny, quarantine, escalate) emits a signed envelope into the OAR substrate. A regulator can walk the chain backwards and prove which prompt produced which clearance decision, signed by which operator, under which policy version.
05 / Policy as code
Versioned policy bundles
Sentinel's rules are typed, versioned, and signed. New policy bundles are downloaded into a staging slot, attested, and rolled forward without restarting brains. The marketplace surface lets organisations distribute rule packs with version attestation across a fleet.
06 / Quarantine
Indeterminate prompts held
When the classifier cannot decide, the prompt is held in a quarantine queue rather than passed downstream. The operator reviews flagged prompts, marks intent, and retraining feeds back into the local classifier. Nothing is silently allowed.
07 / Cortex bridge
Wired into Cortex orchestration
Sentinel is the security tier of the four-brain pipeline (Sentinel, Cortex, Hippocampus, Amygdala). Cortex never sees a prompt that Sentinel has not cleared, and Sentinel never signs a decision without Cortex publishing a routing reason.
Patent anchors
Sentinel sits on four of the 31 filed UK patent applications behind the Mickai SIOS. Patent 21 names the universal AI-agent action interceptor primitive; patents 20, 13 and 03 cover per-skill clearance, voice-gated tool invocation, and the sovereign security framework.
- 21Sentinel, Universal AI-Agent Action Interceptor with Signed Audit, the perimeter primitive.
- 20Per-Skill Clearance-Gated Execution, five clearance levels with fresh re-authentication on resumption.
- 13Voice-Gated Deterministic Tool Invocation, high-stakes tools require a fresh voice utterance at call time.
- 03Sovereign Security Framework, egress firewall, prompt-injection inspection, per-tool rate limits.
UK00004373277 · 31 filed UK patent applications · 914 claims
Wired with
- 660-pattern threat-intent classifier at the boundary
- Per-skill clearance gates with five-level escalation
- Voice-biometric verification against secure-enclave voiceprint
- Signed gate envelopes into the Open Audit Record substrate
- Versioned, attested, signed policy bundles (marketplace-ready)
- Quarantine queue for indeterminate prompts
- Wired into Cortex four-brain orchestration
- 100 percent on-device; no cloud relay; no telemetry
Read the Sentinel patents.
The Sentinel perimeter is filed as part of 31 UK patent applications behind the Mickai SIOS. Read the claim text on the patent surface, or download Mickai and run the perimeter against a local agent yourself.
Engineered by Micky Irons in Cumbria, United Kingdom · @mickyirons