Add a receipts-first claims page for agent-kernel. Cover token scoping, principal-bound handle expansion, fail-closed behavior, audit trace creation, and boundary claims vs AgentFence/contextweaver. Each claim should point to a test, example, or command. Include explicit non-claims: not a sandbox, not host authentication, not a hosted gateway, not a guarantee that host code cannot bypass the kernel. Link from README and security docs.
Add a receipts-first claims page for agent-kernel. Cover token scoping, principal-bound handle expansion, fail-closed behavior, audit trace creation, and boundary claims vs AgentFence/contextweaver. Each claim should point to a test, example, or command. Include explicit non-claims: not a sandbox, not host authentication, not a hosted gateway, not a guarantee that host code cannot bypass the kernel. Link from README and security docs.