Skip to main content

Module reason_codes

Module reason_codes 

Source
Expand description

The codes in the HELM reason-code registry.

A reason code is an open string on the wire. These constants name the registered codes; a code missing from this list is still a valid value, not an error.

Constants§

ACTIVATION_BINDING_MISMATCH
DENY: The company activation record does not match the authenticated tenant, company domain, workspace, or configured environment
ACTIVATION_CEILING_EXCEEDED
DENY: The signed or requested effect, autonomy, or exposure limit exceeds the current company activation ceiling
ACTIVATION_RECORD_INVALID
DENY: The company activation record failed schema, integrity, signature, or lifetime validation
ACTIVATION_TRUST_UNAVAILABLE
DENY: No pinned control-plane activation verification key is configured
AGENT_KILLED
DENY: Agent has been terminated via per-agent kill switch
ALL
Every registered reason code, in registry order.
APPROVAL_REJECTED
DENY: A distinct human approver rejected the escalated effect
APPROVAL_REQUIRED
ESCALATE: High-risk effect requires human approval before execution
APPROVAL_TIMEOUT
DENY: Human approval not received within timeout — action denied
APPROVER_NOT_DISTINCT
DENY: The approver is the requester; an approval needs a distinct principal
ARITHMETIC_OVERFLOW
DENY: An amount or counter total overflows a 64-bit integer
AUTHORITY_CHANGED
DENY: An authority row the permit was issued under changed before the dispatch claim; the permit is voided and the effect must be proposed again
BUDGET_ERROR
DENY: Budget system unavailable (fail-closed)
BUDGET_EXCEEDED
DENY: Operation exceeds allocated budget
CAPABILITY_IRREVERSIBLE
DENY: Irreversible effect class cannot dispatch without an authoritative approval integration
CAPABILITY_MANIFEST_DRIFT
DENY: Caller-pinned capability manifest hash does not match the registry revision
CAPABILITY_ROLLBACK_PLAN_INVALID
DENY: Reversible non-read-only capability lacks a loadable, matching, valid rollback plan
CAPABILITY_TOKEN_INVALID
DENY: Task capability token is malformed, expired, revoked, exhausted, out of scope, or fails signature/binding verification
CAPABILITY_UNKNOWN
ESCALATE: Dispatched capability_id is not registered and is quarantined for review
CONTEXT_MISMATCH
DENY: Environment fingerprint does not match boot-time snapshot
DATA_EGRESS_BLOCKED
DENY: Data transmission to unauthorized external endpoint blocked
DELEGATION_INVALID
DENY: Delegation session is invalid, expired, revoked, or has a binding mismatch
DELEGATION_PRINCIPAL_MISMATCH
DENY: Requesting principal does not match the delegation session’s bound delegate principal
DELEGATION_SCOPE_VIOLATION
DENY: Delegate attempted an action outside the session’s granted capabilities
EFFECT_OUT_OF_SCOPE
DENY: A mandate of the chain does not cover the effect type or target, or the effect type has no control row
EMERGENCY_STOP_FENCED
DENY: A durable tenant/workspace emergency-stop fence is active for newly governed dispatches
EMERGENCY_STOP_SCOPE_REQUIRED
DENY: A governed dispatch omitted the authoritative tenant/workspace scope required while emergency-stop fencing is enabled
EMERGENCY_STOP_UNVERIFIED
DENY: Emergency-stop fence status could not be verified, so the governed dispatch was denied fail-closed
ENVELOPE_INVALID
DENY: Effect envelope failed validation
ERR_ASSUMPTION_STALE
DENY/ESCALATE: A declared plan assumption or dependency is stale before side-effect dispatch
ERR_ATTESTATION_RESULT_REQUIRED
DENY: Signed verifier-issued attestation result is required for emergency authorization
ERR_COMPUTE_GAS_EXHAUSTED
DENY: Sandboxed execution exhausted configured compute or gas budget
ERR_COMPUTE_TIME_EXHAUSTED
DENY: Sandboxed execution exceeded the configured wall-clock time budget
ERR_CONNECTOR_CONTRACT_DRIFT
DENY: Connector observed output shape drift and failed closed
ERR_CONTINUITY_STALE
DENY: Safe Deprecation continuity checkpoint is stale, replayed, expired, or rollbacked
ERR_DEV_FALLBACK_PRESENT
DENY: Dev, audit, mock, software-key, env-fallback, or unsigned overlay path is enabled
ERR_EMERGENCY_CAPSULE_INVALID
DENY: Emergency capsule failed binding, expiry, subset-proof, or delegation validation
ERR_GREEN_TEST_SCOPE_MISSING
DENY: Passing tests were submitted without a declared verification scope
ERR_GROUNDED_ACTION_REF_REQUIRED
DENY: GUI or computer-use action is missing grounded screenshot and DOM/accessibility evidence
ERR_GUI_POSTCONDITION_UNVERIFIED
DENY: GUI or computer-use action postcondition was not verified
ERR_HARDWARE_QUORUM_UNBOUND
DENY: Hardware-bound emergency quorum is missing, duplicated, unauthorized, or revoked
ERR_HARNESS_MUTATION_REQUIRES_APPROVAL
ESCALATE: Mutation of connector, tool, sandbox, policy, verifier, evidence, or routing state requires explicit approval
ERR_HARNESS_TRACE_REQUIRED
DENY: Side-effectful execution is missing a hash-linked HarnessTrace
ERR_HOST_DESTINATION_MISMATCH
DENY: Host-observed egress destination differs from HELM authority metadata
ERR_HOST_EGRESS_AFTER_DENY
DENY: Host-observed egress occurred after HELM denied the corresponding action
ERR_HOST_EGRESS_WITHOUT_INTENT
DENY: Host-observed egress has no corresponding HELM intent or authority receipt
ERR_HOST_PROCESS_UNBOUND
DENY: Host receipt process identity cannot be bound to a HELM workload identity
ERR_HOST_RECEIPT_MISSING
DENY: A HELM network-authority receipt has no matching host evidence receipt
ERR_HOST_VOLUME_EXCEEDED
DENY: Host-observed egress byte volume exceeds the HELM authority ceiling
ERR_PLAN_TRANSACTION_CONFLICT
DENY/ESCALATE: PlanTransaction read/write sets conflict with another open transaction
ERR_PLAN_TRANSACTION_REQUIRED
DENY: Multi-artifact or write-bearing execution is missing a PlanTransaction
ERR_POLICY_DENIED_BUT_HOST_OBSERVED_EGRESS
DENY: Host evidence contradicts a HELM policy denial for network egress
ERR_TON_ACTON_ARGV_REJECTED
DENY: Acton argv failed typed connector validation
ERR_TON_ACTON_GENERIC_MAINNET_SCRIPT_DENIED
DENY: Generic Acton mainnet script execution is denied by default
ERR_TON_ACTON_RAW_SHELL_FORBIDDEN
DENY: Raw shell or raw command execution was requested for Acton
ERR_TON_ACTON_UNKNOWN_COMMAND
DENY: Requested Acton action is not one of the typed HELM TON Acton actions
ERR_TON_ACTON_UNSUPPORTED_VERSION
DENY: Observed Acton version is outside the connector contract
ERR_TON_APPROVAL_CEREMONY_REQUIRED
ESCALATE: TON T3 action requires approval ceremony evidence
ERR_TON_COVERAGE_THRESHOLD_FAILED
DENY/ESCALATE: Acton coverage result is below policy threshold
ERR_TON_EXPECTED_EFFECT_MISMATCH
DENY/ESCALATE: Declared TON expected effects are missing or do not match the action envelope
ERR_TON_LIBRARY_MAINNET_REQUIRES_APPROVAL
ESCALATE: Mainnet TON library publish or top-up requires approval
ERR_TON_LIBRARY_SPEND_CEILING_EXCEEDED
DENY: TON library publish or top-up exceeds spend ceilings
ERR_TON_MAINNET_REQUIRES_APPROVAL
ESCALATE: TON mainnet action requires policy approval before dispatch
ERR_TON_MUTATION_THRESHOLD_FAILED
DENY/ESCALATE: Acton mutation score is below policy threshold
ERR_TON_NETWORK_GRANT_REQUIRED
DENY: TON networked action requires an explicit sandbox network grant
ERR_TON_PLAINTEXT_MNEMONIC_FORBIDDEN
DENY: Plaintext wallet mnemonic or private key material is forbidden
ERR_TON_SANDBOX_GRANT_REQUIRED
DENY: Acton execution requires a valid HELM sandbox grant
ERR_TON_SCRIPT_MANIFEST_HASH_MISMATCH
DENY: Acton script hash does not match the HELM sidecar manifest
ERR_TON_SCRIPT_MANIFEST_REQUIRED
DENY: Networked Acton script is missing the required HELM sidecar manifest
ERR_TON_SOURCE_VERIFICATION_REQUIRED
DENY: TON source verification evidence is required before the action can dispatch
ERR_TON_SPEND_CEILING_EXCEEDED
DENY: TON spend exceeds action or daily policy ceilings
ERR_TON_TOLK_COMPILER_MISMATCH
DENY: Observed Tolk compiler version does not match policy or connector contract
ERR_TON_TOLK_COMPILER_UNPINNED
DENY: A Tolk compiler version pin is required for bytecode-sensitive TON work
ERR_TON_VERIFY_BYTECODE_MISMATCH
DENY: TON verifier bytecode comparison failed
ERR_TON_VERIFY_DRY_RUN_REQUIRED
DENY: TON verifier dry-run evidence is required before final verification or deployment
ERR_TON_WALLET_REF_REQUIRED
DENY: TON action requires an opaque wallet reference
IDEMPOTENCY_CONFLICT
DENY: The idempotency key was already used with a different request
IDENTITY_ISOLATION_VIOLATION
DENY: Agent credential reuse or impersonation detected
INSUFFICIENT_PRIVILEGE
DENY: Agent privilege tier insufficient for requested effect type
JURISDICTION_VIOLATION
DENY: Effect violates jurisdictional constraint
MANDATE_INACTIVE
DENY: No active mandate held by the principal covers the effect, or a mandate of its chain is revoked
MANDATE_OUTSIDE_VALIDITY
DENY: A mandate of the chain is outside its validity window
MISSING_REQUIREMENT
DENY: Required precondition not satisfied
NO_POLICY_DEFINED
DENY: No policy covers this effect type
PDP_DENY
DENY: External PDP returned deny
PDP_ERROR
DENY: PDP unavailable or returned error (fail-closed)
PERMIT_ARGUMENT_MISMATCH
DENY: The arguments an adapter was about to send are not the bytes the permit’s argument digest covers
PERMIT_EXPIRED
DENY: The permit expired before the dispatch claim; it is voided and the effect must be proposed again
PER_CALL_LIMIT
DENY: The effect’s amount exceeds a per-call limit of the mandate chain
POLICY_EPOCH_CHANGED
DENY: The active policy epoch changed before the effect could be issued
POLICY_HASH_MISMATCH
DENY: Policy source bytes did not match the published canonical policy hash
POLICY_NOT_READY
DENY: No verified EffectivePolicySnapshot is installed for the requested scope
POLICY_SIGNATURE_INVALID
DENY: Policy source signature or provenance verification failed
POLICY_VIOLATION
DENY: Effect violates an active policy rule
PRECONDITION_FAILED
DENY: A precondition the effect type declares does not hold, so no attempt was created
PRG_EVALUATION_ERROR
DENY: Policy Requirement Graph evaluation failed
PRINCIPAL_INACTIVE
DENY: The requesting principal is unknown to the tenant or disabled
PROMPT_INJECTION_DETECTED
DENY: Prompt injection pattern detected in untrusted input
PROVENANCE_FAILURE
DENY: Provenance chain broken or unverifiable
PROVIDER_CREDENTIAL_REJECTED
DENY: The connection’s credential is unavailable, or the provider rejected it as invalid, revoked or lacking permission
PROVIDER_ERROR
DENY: The provider failed or refused the call for a reason other than its credential
PROVIDER_RESPONSE_TOO_LARGE
DENY: A provider response exceeded the adapter’s size limit and was not read
READBACK_MISMATCH
DENY: The adapter’s read-back of the provider does not match the proposed effect, so the outcome is FAILED
SAFEDEP_DEGRADED_NARROWING
ESCALATE: Safe Deprecation classified the hazard as recoverable degraded narrowing
SAFEDEP_DEPRECATED_READONLY
DENY: Safe Deprecation classified the hazard as read-only deprecation
SAFEDEP_TERMINAL_FREEZE
DENY: Safe Deprecation classified the hazard as terminal freeze
SANDBOX_VIOLATION
DENY: Effect exceeds sandbox boundary
SCHEMA_VIOLATION
DENY: Request does not conform to schema
SEMANTIC_THREAT_REVIEW_REQUIRED
ESCALATE: Configured deterministic semantic advisory requires human review
SESSION_RISK_MEMORY_DENY
DENY: Session trajectory risk exceeded the deterministic authorization threshold
STEP_UP_REQUIRED
DENY: Approving a high-risk, irreversible or authority-widening effect needs a step-up assertion the request did not carry
SYSTEM_FROZEN
DENY: System is in global freeze state — all actions denied
TAINTED_CREDENTIAL_ACCESS_DENY
DENY: Credential or token access attempted from tainted source
TAINTED_DATA_EGRESS_DENY
DENY: Data egress or exfiltration attempted from tainted source
TAINTED_HIGH_RISK_ESCALATE
ESCALATE: High-risk effect from tainted source requires human approval
TAINTED_INPUT_HIGH_RISK_DENY
DENY: High-risk effect denied due to tainted/untrusted input source
TAINTED_PRIVILEGED_INVOKE_DENY
DENY: Privileged agent invocation attempted from tainted source
TAINTED_SOFTWARE_PUBLISH_DENY
DENY: Software publish or release attempted from tainted source
TEMPORAL_INTERVENTION
ESCALATE: Time-based intervention triggered
TEMPORAL_THROTTLE
ESCALATE: Rate limit or cooldown active
TENANT_ISOLATION
DENY: Cross-tenant access violation
UNICODE_OBFUSCATION_DETECTED
DENY: Unicode obfuscation (zero-width chars, homoglyphs) detected
VERIFICATION_FAILURE
DENY: Cryptographic verification failed

Functions§

is_registered
Whether code is in the registry.