About

About Maelys Datalog

The project, its design commitments, and the systems researcher behind it.

The project

Maelys Datalog is an embedded, closed-vocabulary Datalog engine for native C applications and browser runtimes. It makes authorization logic declarative, auditable, and fail-closed by construction.

The engine is designed for contexts where every decision must be reproducible and attributable to the exact policy source and runtime facts that produced it. Policies are loaded through integrity-checked manifests, evaluated against caller-owned facts, and observed through explicit public queries.

C11implementation language
macOS + Linuxnative targets
WASM + Pythonbindings

The author behind Maelys Datalog

Digital portrait of David Bromberg within the cyan-to-magenta network of Maelys
David BrombergProfessor · systems researcher · author and maintainer

David Bromberg is a Professor in Distributed Computing Systems at the University of Rennes and a member of IRISA, where he has worked since 2015. His work sits at the intersection of distributed systems, systems software, and security. He currently heads IRISA's Large-Scale Systems department.

He was one of the initiators of the Inria national challenge on systems research, launched in 2022 to reconnect and strengthen the French operating-systems community. In the same spirit, he served as General Chair of EuroSys 2022 in Rennes, helping bring the European systems community back together after two years of remote editions.

David is also deeply involved in strengthening computer-science research and higher education in Sub-Saharan Africa through teaching, mentoring, and long-term academic initiatives.

Research path

Before Rennes, David was an Associate Professor at the University of Bordeaux and a member of LaBRI, where he led a software-engineering research group from 2013 to 2015.

His research explores how complex distributed systems can remain scalable, programmable, and dependable. It spans overlay networks, distributed systems, systems and network programming, and software-engineering methods for systems. In recent years, this work has increasingly focused on cybersecurity from a systems perspective: treating isolation, runtime behavior, and enforceable policy as one engineering problem.

David has authored more than 40 peer-reviewed publications. His work has appeared at venues including NSDI, EuroSys, ICDCS, DSN, Middleware, INFOCOM, PerCom, and SRDS, and he regularly serves on program committees across the systems and distributed-computing community. His complete publication record is available on DBLP.