All tags
Catalogue tag

#agent-security

Every repository in the public record carrying this tag — from its GitHub topics or the keywords its package registries publish. Health is measured under the same versioned methodology as the rest of the record.

37 records
Tagged “agent-security”Ranked by health index
PyPI · crates.io · npm
93Exceptionalhealth index
hashgraph-online/hol-guard
Open-source antivirus for AI agents: block risky tools, secret access, prompt injection, malicious packages, MCP servers, plugins, and skills at runtime.
Python · TypeScript★ 557↓ 95.5K/moSep 5, 2026
Apache-2.0Sep 5, 2026 · metrics 2.10.0
Go
93Exceptionalhealth index
mindburn-labs/helm-ai-kernel
Fail-closed execution firewall for AI agents: quarantine MCP tools, proxy OpenAI-compatible requests, emit signed receipts, and verify EvidencePacks offline.
Go · Java★ 53Jul 17, 2026
Apache-2.0Jul 17, 2026 · metrics 2.10.0
PyPI · RubyGems
90Excellenthealth index
OWASP/www-project-agent-memory-guard
OWASP Foundation web repository
Python★ 155↓ 2,902/moAug 25, 2026
Apache-2.0Aug 25, 2026 · metrics 2.10.0
Go
90Excellenthealth index
mindburn-labs/helm-oss
Fail-closed execution firewall for AI agents: quarantine MCP tools, proxy OpenAI-compatible requests, emit signed receipts, and verify EvidencePacks offline.
Go · Java★ 53Jul 18, 2026
Apache-2.0Jul 18, 2026 · metrics 2.10.0
crates.io
90Excellenthealth index
nolabs-ai/nono
Sandbox any AI agent in seconds - zero setup, zero latency.
Rust★ 3,016Jul 16, 2026
Apache-2.0Jul 16, 2026 · metrics 2.10.0
crates.io
89Excellenthealth index
always-further/nono
Sandbox any AI agent in seconds - zero setup, zero latency.
Rust★ 3,036Jul 17, 2026
Apache-2.0Jul 17, 2026 · metrics 2.10.0
crates.io
89Excellenthealth index
lukehinds/nono
Sandbox any AI agent in seconds - zero setup, zero latency.
Rust★ 3,047Jul 19, 2026
Apache-2.0Jul 19, 2026 · metrics 2.10.0
PyPI
88Excellenthealth index
datafog/datafog-python
Offline PII firewall for AI agents and LLM apps: fast local detection and redaction, Claude Code hook, LiteLLM guardrail. Zero network calls, one dependency.
Python★ 67↓ 34K/moJul 16, 2026
MITJul 16, 2026 · metrics 2.10.0
npm
88Excellenthealth index
garudex-labs/caracal
🐾 Authority, not credentials, for AI agents: policy-approved actions, delegation that can only narrow, instant revocation, tamper-evident audit.
TypeScript · Go★ 155Jul 15, 2026
Apache-2.0Jul 15, 2026 · metrics 2.10.0
npm
86Excellenthealth index
emiliaprotocol/emilia-protocol
Authority control plane for autonomous work. EMILIA Gate enforces finite customer-owned mandates at protected executor boundaries; the open protocol keeps evidence verifiable.
TypeScript · HTML★ 649↓ 1,109/moSep 5, 2026
Apache-2.0Sep 5, 2026 · metrics 2.10.0
PyPI
86Excellenthealth index
vaaraio/vaara
Accountable Autonomy: open-source evidence layer that gates every AI agent tool call against your policy and writes a hash-chained record an auditor verifies offline, without trusting you. Root-agnostic; binds to TPM 2.0 / SEV-SNP when present. Your environment, no SaaS, no telemetry. AGPL-3.0.
Python★ 11↓ 6,460/moAug 22, 2026
AGPL-3.0Aug 22, 2026 · metrics 2.10.0
Go
83Excellenthealth index
peg/rampart
Open-source firewall for AI agents. Policy engine that audits and controls what OpenClaw, Claude Code, Cursor, Codex, and any AI tool can do on your machine.
Go★ 83Sep 6, 2026
Apache-2.0Sep 6, 2026 · metrics 2.10.0
npm · PyPI
81Excellenthealth index
Agent-Threat-Rule/agent-threat-rules
Open detection standard -- like Sigma, but for AI agents. 425 rules, shipped in Microsoft AGT, Cisco AI Defense, MISP, OWASP A-S-R-H. 97.1% recall on NVIDIA garak. NIST OSCAL Path 1.
TypeScript★ 314↓ 9,370/moJul 16, 2026
MITJul 16, 2026 · metrics 2.10.0
Go
81Excellenthealth index
cfgaudit/cfgaudit
AI agent configuration security auditor - find misconfigurations in Claude Code, Cursor, and other AI tools
Go★ 7Aug 23, 2026
Apache-2.0Aug 23, 2026 · metrics 2.10.0
npm
80Excellenthealth index
lua-ai-global/governance
Zero-dependency TypeScript SDK for AI agent governance: policy enforcement, injection detection, tamper-evident audit, and standards mapping (EU AI Act, OWASP, NIST, ISO 42001)
TypeScript★ 25↓ 3,545/moJul 26, 2026
MITJul 26, 2026 · metrics 2.10.0
npm
78Goodhealth index
node9-ai/node9-proxy
The Execution Security Layer for the Agentic Era. Providing deterministic "Sudo" governance and audit logs for autonomous AI agents.
TypeScript★ 209↓ 9,089/moJul 22, 2026
Custom licenseJul 22, 2026 · metrics 2.10.0
77Goodhealth index
Asymptote-Labs/agent-beacon
Agent Beacon is the world's first open-source telemetry layer for AI agents wherever they run: locally, in CI, or in the cloud.
Go★ 293Jul 15, 2026
MITJul 15, 2026 · metrics 2.10.0
npm
77Goodhealth index
Synapsor/Synapsor-Runner
Let AI agents query and update Postgres/MySQL without raw SQL, unrestricted schema access, or database credentials in the model; writes stay reviewed.
TypeScript · JavaScript★ 2↓ 5,822/moAug 22, 2026
Apache-2.0Aug 22, 2026 · metrics 2.10.0
crates.io · npm
77Goodhealth index
backbay-labs/clawdstrike
AI EDR for developer workstations and autonomous agent fleets. Build Swarm Detection & Response platforms with Clawdstrike.
TypeScript · Rust★ 285Aug 4, 2026
Apache-2.0Aug 4, 2026 · metrics 2.10.0
Go
77Goodhealth index
calbebop/batesian
Active security scanner for A2A and MCP servers
Go★ 1Jul 27, 2026
Apache-2.0Jul 27, 2026 · metrics 2.10.0
npm
77Goodhealth index
thewaltero/mythos-router
The leaked Anthropic reasoning protocol. Running locally. Zero-drift coding with Strict Write Discipline and adaptive Claude Opus 4.8 thinking. Mythos
TypeScript★ 279↓ 579/moJul 17, 2026
MITJul 17, 2026 · metrics 2.10.0
npm
75Goodhealth index
comisai/comis
Open-source security-first runtime for AI agents that learn and act across sessions.
TypeScript★ 5Jul 20, 2026
Apache-2.0Jul 20, 2026 · metrics 2.10.0
PyPI · npm
75Goodhealth index
gautamvarmadatla/mcpsafetywarden
MCP servers expose tools with no information about what they actually do at runtime. mcpsafetywarden sits between your agent and any MCP server, profiling tool behavior, blocking destructive calls, and running active security audits before you trust them in a workflow.
Python★ 9↓ 2,923/moAug 1, 2026
Custom licenseAug 1, 2026 · metrics 2.10.0
PyPI
75Goodhealth index
msaleme/red-team-blue-team-agent-fabric
540 security tests for AI agent systems — MCP, A2A, x402/L402, decision governance, benchmark integrity, skill supply chain. AIUC-1 pre-cert, NIST AI 800-2 aligned, MCP tool-poisoning reproduction. v4.9.1
Python★ 20↓ 667/moJul 20, 2026
Apache-2.0Jul 20, 2026 · metrics 2.10.0
Go
73Goodhealth index
openclaw/clawscan
Composable security scanning harness for agent skills
Go · Python★ 12Jul 23, 2026
MITJul 23, 2026 · metrics 2.10.0
PyPI
73Goodhealth index
philpaz/recusal
Deterministic governance for Claude and MCP tool calls. Pin approved capabilities, detect drift, and refuse unsafe or unapproved actions before execution. No model in the decision path.
Python★ 3↓ 2,854/moJul 27, 2026
Apache-2.0Jul 27, 2026 · metrics 2.10.0
PyPI · npm
71Goodhealth index
PrismorSec/prismor
Runtime Firewall for AI agents which catches the rogue tool call before it runs. Dangerous commands, secret leaks, prompt injection. For Claude Code, Codex and framework SDKs
Python · HTML★ 240↓ 6,171/moJul 19, 2026
Apache-2.0Jul 19, 2026 · metrics 2.10.0
Go
67Goodhealth index
tiagosilva07/zyrax-guard
Audit your AI agent configs before you run them — prompt injection, rogue MCP servers, credential-exfil. Plus dependency vetting.
Go★ 2Aug 28, 2026
MITAug 28, 2026 · metrics 2.10.0
Go
63Moderatehealth index
lelu-ai/lelu
Open source authorization engine for AI agents. Confidence-aware gating · Human-in-the-loop review · Policy-as-code · Full audit trail
TypeScript · Go★ 43Jul 16, 2026
MITJul 16, 2026 · metrics 2.10.0
npm
63Moderatehealth index
sgateway/s-gw
Local credential control for AI coding agents.
TypeScript · Swift★ 15↓ 2,863/moJul 29, 2026
Apache-2.0Jul 29, 2026 · metrics 2.10.0