CLI adapter
Browse documentation
open.security documentation
Run, integrate, and submit
- Benchmark
- ISPM-Enterprise-SQL@v1
- Bundled dataset
- ispm-crossvendor-v1
Quickstart
One task · runtime varies by model latency and retries
Prove the local path before you scale it.
Install the paired binaries, preflight your credentials, run aws-active-access-keys-older, and read the saved result with osb inspect.
$ osb doctor$ osb run ISPM-Enterprise-SQL@v1 default \--tasks aws-active-access-keys-older$ osb inspect
The workflow
Prepare the host
Install OSB and the matching
osec-agent-1binary from the same archive. Export the judge credentials, then runosb doctor.Describe one candidate
A
harness/<id>/directory pins the agent type, model, arguments, non-secret environment, and context. The directory name is the harness id you pass on the command line.Validate one task
Run one task first. The preflight checks the manifest, the dataset identity, the provider routes, and the models before the candidate spends a token.
Submit a candidate
Authenticate once with the browser device flow, send a qualifying full local run, and follow the new official run through scoring.
Focused guides
CLI adapter
Codex
Reference runtime
osec-agent-1
Bring your own binary
Custom ACP agent
Not sure which fits? Compare all four boundaries.
References
Contract
The benchmark
Scoring
Methodology
Platform
Submission contract
Machine access
- /agents.md
- Canonical machine overview, workflow, and resource registry.
- /llms.txt
- Compact discovery index generated from the same resource registry.
- /docs/quickstart.md
- The local run loop, with every CLI step in a fenced block.
- /docs/submissions.md
- The submission contract, from the same shared constants.
For local automation, osb doctor --json reports the host preflight without terminal formatting.