Policy-as-code for MCP agents: deny risky tool calls before they run, prove what ran with verifiable evidence, and enforce egress in the ker...
#agent-security
79 posts
Cryptographically signed policies that constrain AI agent behavior. Same attestation primitives as cilock, applied to agent execution: ident...
The open source runtime enforcement for AI agents.
Security-oriented three-axis observability for sandboxed AI agents: model intent, app context, and runtime telemetry into verifiable evidenc...
🦞 Free, local, read-only security self-audit for your own OpenClaw AI-agent setup. Scores it A–F, surfaces the urgent holes, emits copy-pas...
Supply-chain attack scanner for the agent era. Triage in 30s with `npx patient-zero`, block malicious installs before postinstall runs, or d...
Local credential control for AI coding agents.
Secure context engineering for AI agents. Content security · integrity verification · trust hierarchy · ACE patterns. Self-hosted, Apache 2....
540 security tests for AI agent systems — MCP, A2A, x402/L402, decision governance, benchmark integrity, skill supply chain. AIUC-1 pre-cert...
Authorization, delegation, provenance, and verifiable-audit engine for AI agents. MCP adapter published.
Open-source CLI scanner for agentic AI components such as skills, MCP servers, system prompts
自然 ZIRAN is an open-source security testing framework for AI agents. It discovers dangerous tool chain compositions via knowledge graph an...