An exceptionally engineered AI-native security proxy with a best-in-class human-control story, held back by a post-deadline single-commit push and an AI path that is simulated rather than shown running.
The deterministic-first design with sampled AI calls, EWMA-adaptive thresholds, a coverage gate and a rule that an error is never reported as SAFE goes well beyond a prompt wrapper. Commercial AI-informed WAFs already exist, which keeps a strong idea above average rather than exceptional, and Member A's 8 is generous against that prior art.
Members disagree here: scores range by 2.0 points.AI fills the exact gap the product claims, and removing the model calls leaves only a generic signature proxy. The runtime evidence is thin though, since no logs or artifacts show the model path executing and the demo simulates it, which supports the median between A's 8 and C's 5; missing committed API keys are not themselves evidence, as keys are never committed.
Members disagree here: scores range by 3.0 points.The target user and use case are concrete, and control is well designed with separate approval and activation, editable policy and budget ceilings. Real deployment spans Redis, Ed25519 keys, a GitHub App and Auth0, and the path visible to the jury is a simulation.
The landing page and docs are polished, with a real component library and professional tooling visible in the code. The only screenshots actually described are static pixel-art hero images rather than real UI captures, so the rendered dashboard is unverifiable, which caps the score below B's 7.5.
Members disagree here: scores range by 2.5 points.Roughly 58,700 LOC, 116 test cases and a working-looking Fastify ingress path with normalizer, runner and orchestrator exceed typical hackathon scope. Against that, the event-dated plan admits the proxy-dashboard wiring was still a plan on local mocks, the backend has no automated tests by its own docs, and the demo is scripted.
Members disagree here: scores range by 2.0 points.claude:glm-5.3-flash74.080% agreedots-studio/dots-3-note-preview:free65.590% agreeinclusionai/ling-3.0-flash-sante:free54.060% agreeclaude:glm-5.3–judgeThe council, the evidence pack, the prompts and the queue are all on GitHub. If a review helped you, a star helps other teams find it.