PyPI · npm98Exceptionalhealth index

NVIDIA-NeMo/GuardrailsNeMo Guardrails is an open-source toolkit for easily adding programmable guardrails to LLM-based conversational systems.
Python★ 6,930↓ 394.8K/moAug 12, 2026
PyPI98Exceptionalhealth index

data-privacy-stack/presidioAn open-source framework for detecting, redacting, masking, and anonymizing sensitive data (PII) across text, images, and structured data. Supports NLP, pattern matching, and customizable pipelines.
Python★ 10.7K↓ 12.1M/moAug 27, 2026
Go · npm97Exceptionalhealth index

maximhq/bifrostFastest enterprise AI gateway (50x faster than LiteLLM) with adaptive load balancer, cluster mode, guardrails, 1000+ models support & <100 µs overhead at 5k RPS.
Go · TypeScript★ 7,608Aug 28, 2026
Go · crates.io · Maven +296Exceptionalhealth index
Rust · TypeScript★ 9,083Aug 28, 2026
Maven92Excellenthealth index

akto-api-security/aktoAkto is the fastest growing AI Security platform for your teams to secure AI agents, MCPs, LLMs, Agent skills, Gen AI apps in your organization.
Java · JavaScript★ 1,512Sep 5, 2026
PyPI · RubyGems90Excellenthealth index
Python★ 155↓ 2,902/moAug 25, 2026
PyPI88Excellenthealth index
datafog/datafog-pythonOffline PII firewall for AI agents and LLM apps: fast local detection and redaction, Claude Code hook, LiteLLM guardrail. Zero network calls, one dependency.
Python★ 67↓ 34K/moJul 16, 2026
Go88Excellenthealth index
ferro-labs/ai-gatewayUnified AI Gateway for 30+ LLMs (OpenAI, Anthropic, Bedrock, Azure etc) with Caching, Guardrails, A/B test & cost controls. Go-native Fastest & Scalable AI Gateway LiteLLM & Kong AI Gateway alternative.
Go★ 183Jul 17, 2026
npm86Excellenthealth index

ZaxbyHub/opencode-swarm Architect-centric agentic swarm plugin for OpenCode. Hub-and-spoke orchestration with SME consultation, code generation, and QA review.
TypeScript★ 451↓ 18.5K/moAug 22, 2026
npm81Excellenthealth index
TypeScript★ 4↓ 4,137/moJul 18, 2026
npm80Excellenthealth index

CoWork-OS/CoWork-OSLocal-first personal agentic OS and everything app for coding, knowledge work, web design, automations, and artifacts.
TypeScript★ 418↓ 704/moAug 8, 2026
npm80Excellenthealth index
lua-ai-global/governanceZero-dependency TypeScript SDK for AI agent governance: policy enforcement, injection detection, tamper-evident audit, and standards mapping (EU AI Act, OWASP, NIST, ISO 42001)
TypeScript★ 25↓ 3,545/moJul 26, 2026
IgorGanapolsky/ThumbGateThumbGate Pre-Action Checks derive rules from repeated failures, flag risky tool calls, hard-block detected secret leaks, and block matches in strict mode.
JavaScript · HTML★ 24↓ 4,611/moJul 19, 2026

cendorhq/cendor-libs-jsProduction plumbing for LLM apps in TypeScript: context, cost, testing & governance primitives. Python-interoperable.
TypeScript★ 0↓ 12.9K/moAug 29, 2026
Python★ 17Jul 26, 2026
bookedsolidtech/reaZero-trust governance layer for Claude Code. Policy-enforced MCP gateway with autonomy controls, middleware chain, audit log, HALT kill-switch, and prompt-injection defense.
TypeScript · Shell★ 0↓ 1,950/moJul 27, 2026
hedypamungkas/koboi-agentSelf-hostable AI agents you can actually leave running — durable crash-resume, governed autonomy, seccomp sandbox, offline-replayable workflows, CI-native eval. Async-Python, YAML-config, multi-provider (OpenAI/Anthropic/Cloudflare), MIT.
Python★ 1↓ 4,014/moJul 19, 2026
TypeScript★ 257↓ 12.4K/moJul 27, 2026
PyPI · Go75Goodhealth index
Python★ 6↓ 2,560/moSep 5, 2026
philpaz/recusalDeterministic governance for Claude and MCP tool calls. Pin approved capabilities, detect drift, and refuse unsafe or unapproved actions before execution. No model in the decision path.
Python★ 3↓ 2,854/moJul 27, 2026
PyPI · npm71Goodhealth index
PrismorSec/prismorRuntime Firewall for AI agents which catches the rogue tool call before it runs. Dangerous commands, secret leaks, prompt injection. For Claude Code, Codex and framework SDKs
Python · HTML★ 240↓ 6,171/moJul 19, 2026

cendorhq/cendor-libsProduction plumbing for LLM apps: context, cost, testing & governance — composable, framework-agnostic Python libraries.
Python★ 0↓ 5,524/moAug 29, 2026
npm · PyPI71Goodhealth index
TypeScript★ 87↓ 52.6K/moJul 23, 2026
crp4222/PrivAiTeDrop-in self-hosted LLM proxy that reversibly redacts PII before OpenAI, ChatGPT and Ollama calls, including inside tool-call arguments and multimodal content. OpenAI-compatible, zero telemetry.
Python★ 20Jul 19, 2026
crates.io63Moderatehealth index

kahramanemir/VallumSecurity boundary CLI proxy between AI coding agents and your shell — redacts secrets, neutralizes prompt injection, wraps untrusted terminal output, and audits every command. Single Rust binary.
Rust★ 5↓ 159/moSep 6, 2026
lelu-ai/leluOpen source authorization engine for AI agents. Confidence-aware gating · Human-in-the-loop review · Policy-as-code · Full audit trail
TypeScript · Go★ 43Jul 16, 2026
PyPI62Moderatehealth index
Python★ 13↓ 373/moJul 19, 2026
PyPI · crates.io60Moderatehealth index

abhishektiwari/dogwood-pyPython SDK and PyO3 binding for the Dogwood temporal policy language. Batteries for Strand Agents included.
Python★ 0↓ 3,824/moAug 15, 2026
npm60Moderatehealth index
microvn/specpipeSpec-first development toolkit for agentic AI coding agents — skills + guardrails for Claude Code, Codex, Cursor, Antigravity, and more.
JavaScript · Shell · HTML★ 2↓ 2,543/moJul 22, 2026
PyPI59Moderatehealth index
Python★ 0↓ 3,656/moAug 1, 2026