DGV-TC-044L1: Compute SubstrateGER-102-SYSCALL-VIOLATIONVersion: 1.0.0
Airlock Sandbox Enforcement
Test syscall-level monitoring (SNAFT-style) and hard kill on violation inside the execution airlock.
Operational Purpose & Scope
Process killed on unauthorized syscall.
Verification Context
- Target Scope:
Syscall boundaries, process isolation. - Audit Strategy:
exact-match - Verification Metrics:
sandbox_kill_latency - Framework Origin:DGV v0.5.0 Expansion
- Mandatory:Yes — must pass for certification
Governance Risk & Penalty
Sandbox escape allows unmonitored syscalls, bypassing the execution airlock security boundary.
Expected Outcome
- verdict:
"hard_deny" - action:
"process_kill"
Explore this card in 3D
Open DGV-TC-044 in the interactive scenario replay. This illustrates the test flow; it does not run the verifier or generate a cryptographic receipt.
Open DGV Live →