github: https://github.com/resyncgg/dacquiri
let the compiler inform what needs to be done instead of talking to people
this requires inverting the model from top-to-bottom
make the compiler enforce that the access-control has occurred for every code path
this lowers the boundary to author secure software
annotate the low level methods to do this
Terminology