Default-deny execution gate for AI agents, APIs, and distributed systems. Policies, drift detection, hard invariants, post-quantum signed permits.Written in Rust. Says no unless policy says yes.
-
Updated
May 4, 2026 - Rust
Default-deny execution gate for AI agents, APIs, and distributed systems. Policies, drift detection, hard invariants, post-quantum signed permits.Written in Rust. Says no unless policy says yes.
Local-first capability discovery for AI agent workspaces. Scans your skills, MCP servers, and scripts to find risky combinations (e.g. read .env + post to webhook = data exfiltration) — no LLM calls, no uploads. CLI + HTML report + chat summary for personal agents like Hermes and OpenClaw.
Add a description, image, and links to the agentsecurity topic page so that developers can more easily learn about it.
To associate your repository with the agentsecurity topic, visit your repo's landing page and select "manage topics."