OWASP Top 10:2025 ranks Broken Access Control #1: 100% of the applications tested had some form of it. Alerts do not fix anything and unverified patches are guesses. Rootlane closes the loop.
Our OWASP Juice Shop (juiceshop.rootlane.xyz, Akash) sends derived request telemetry (never passwords, tokens or bodies) to the Rootlane API (api.rootlane.xyz, FastAPI on Akash), stored in ClickHouse Cloud. Every ~10 s an always-on open model on AkashML (GLM-5.3) reads behavioural features per identity and IP and answers ignore / watch / escalate; a deterministic rule also escalates when an identity is served without ever logging in. Escalation opens an incident and starts our TypeScript agent hosted on Guild (claude-opus-5): it queries ClickHouse read-only, reads the source, runs Semgrep and cites our policies stored in Senso; every tool call is audited. It proposes a fix plus a Semgrep rule; a named human approves in the dashboard (app.rootlane.xyz, Vercel) and it opens a PR on our fork.
Guild hosts and governs the agent. ClickHouse is the real-time backbone. Akash hosts the app and API; AkashML runs triage. Senso is the verified context. Semgrep scans, verifies and prevents recurrence. Replica verification is built but disabled on the public deploy for safety.