Evaluating the request

Applying policy and recording a persistent approval state.

IBM reviewer mode · governed remediation

Understand the decision in seconds. Inspect the technical contract when needed.

A simulated IBM remediation proposal is intercepted before execution, persisted in Neon, reviewed by a human, returned as a machine-readable state, and documented with a publicly verifiable signed receipt.

SIM

Simulated for this controlled review

The original IBM remediation event and downstream execution target. No customer system is changed.

REAL

Operating live in this demo

Cloudflare API enforcement, Neon persistence, human state transition, polling, RS256 signing, JWKS publication, and receipt verification.

Approval lifecycle

Start with the intercepted remediation request.
1Request approvalCritical remediation proposed
2Block executionPending human authority
3Human decisionApprove or deny
4Return statusPolling continuation
5Signed evidenceIssue and verify receipt

Critical dependency remediation

Synthetic IBM watsonx production-patch proposal

Not started
Approval ID
Created when the workflow starts
Requesting agent
ibm-watsonx-remediation-agent
Finding
CVE-2026-10492
Risk level
Critical
Affected systems
customer-portalprod-web-edge
Policy trigger Internet-facing critical vulnerability with production impact requires authorized human approval before execution.
What the agent is told Create the approval request before attempting the remediation.

Agent response and audit events

Plain-English meaning first; raw technical output remains available below.

No events yetCreate the approval to begin the persisted audit trail.
Machine-readable response
{
  "status": "not_started",
  "agent_instruction": "Create the approval request."
}
Original synthetic request payload