PyPI · npm98Exceptionalhealth index

NVIDIA-NeMo/GuardrailsNeMo Guardrails is an open-source toolkit for easily adding programmable guardrails to LLM-based conversational systems.
Python★ 6,930↓ 394.8K/moAug 12, 2026
PyPI97Exceptionalhealth index
Python★ 5,775Aug 28, 2026
PyPI95Exceptionalhealth index
Python★ 2,423Aug 13, 2026
PyPI · npm94Exceptionalhealth index
msaad00/agent-bomOpen security scanner and self-hosted control plane for AI, MCP, and cloud. One evidence model — run scans in your environment, centralize findings, govern in your VPC.
Python · TypeScript★ 28↓ 5,301/moJul 16, 2026
Go93Exceptionalhealth index
mindburn-labs/helm-ai-kernelFail-closed execution firewall for AI agents: quarantine MCP tools, proxy OpenAI-compatible requests, emit signed receipts, and verify EvidencePacks offline.
Go · Java★ 53Jul 17, 2026
Go91Excellenthealth index

praetorian-inc/juliusSimple LLM service identification - translate IP:Port to Ollama, vLLM, LiteLLM, or 60+ other AI services in seconds
Go★ 175Aug 8, 2026
PyPI91Excellenthealth index

usestrix/strixOpen-source AI penetration testing tool to find and fix your app’s vulnerabilities.
Python · Go · TypeScript★ 48.3KAug 5, 2026
PyPI · RubyGems90Excellenthealth index
Python★ 155↓ 2,902/moAug 25, 2026
Go90Excellenthealth index
mindburn-labs/helm-ossFail-closed execution firewall for AI agents: quarantine MCP tools, proxy OpenAI-compatible requests, emit signed receipts, and verify EvidencePacks offline.
Go · Java★ 53Jul 18, 2026
crates.io90Excellenthealth index
nolabs-ai/nonoSandbox any AI agent in seconds - zero setup, zero latency.
Rust★ 3,016Jul 16, 2026
crates.io89Excellenthealth index
Rust★ 3,036Jul 17, 2026
crates.io89Excellenthealth index
lukehinds/nonoSandbox any AI agent in seconds - zero setup, zero latency.
Rust★ 3,047Jul 19, 2026
npm88Excellenthealth index

asamassekou10/ship-safeCLI security scanner built for the agentic era. Detects CI/CD misconfigs, agent permission risks, MCP tool injection, hardcoded secrets, and DMCA-flagged AI dependencies.
JavaScript★ 830↓ 5,893/moSep 6, 2026
PyPI88Excellenthealth index
datafog/datafog-pythonOffline PII firewall for AI agents and LLM apps: fast local detection and redaction, Claude Code hook, LiteLLM guardrail. Zero network calls, one dependency.
Python★ 67↓ 34K/moJul 16, 2026
Go86Excellenthealth index
Nox-HQ/noxOpen-source security scanner with first-class AI app security (prompt injection, embedding leakage, agent over-privilege, MCP hardening). Polyglot AIBOM, SARIF, SBOM. Cosign-signed plugin marketplace. Offline-first, agent-native via MCP.
Go★ 0Jul 24, 2026
npm · PyPI86Excellenthealth index

issdandavis/SCBE-AETHERMOOREGeometric AI governance and evaluation framework with a 14-layer security pipeline, semantic projection, and reproducible benchmark lanes.
Python · TypeScript★ 6↓ 4,607/moAug 26, 2026
PyPI86Excellenthealth index

vaaraio/vaaraAccountable Autonomy: open-source evidence layer that gates every AI agent tool call against your policy and writes a hash-chained record an auditor verifies offline, without trusting you. Root-agnostic; binds to TPM 2.0 / SEV-SNP when present. Your environment, no SaaS, no telemetry. AGPL-3.0.
Python★ 11↓ 6,460/moAug 22, 2026
Go · PyPI84Excellenthealth index

adithyan-ak/AgentHoundOffensive security framework for AI agent infrastructure - recon, credential looting, model exfiltration, poisoning, and attack-path analysis across MCP, A2A, gateways, and AI services. BloodHound for the agentic stack.
Go · TypeScript★ 270Aug 22, 2026
Go83Excellenthealth index
Go★ 69Jul 21, 2026
npm · PyPI81Excellenthealth index
Agent-Threat-Rule/agent-threat-rulesOpen detection standard -- like Sigma, but for AI agents. 425 rules, shipped in Microsoft AGT, Cisco AI Defense, MISP, OWASP A-S-R-H. 97.1% recall on NVIDIA garak. NIST OSCAL Path 1.
TypeScript★ 314↓ 9,370/moJul 16, 2026
Go81Excellenthealth index
airomhq/airomOpen-source AI Bill of Materials (AIBOM) scanner: inventories AI models, datasets, prompts, embeddings, vector DBs & RAG pipelines across code, containers & Kubernetes — with file:line evidence, load-time risk detection (poisoned pickle / Keras Lambda / unsafe torch.load) and NIST AI RMF / OWASP compliance mapping. CycloneDX · SARIF · JSON.
Go · MDX★ 8Jul 23, 2026
PyPI · npm81Excellenthealth index

sseshachala/conductaiAI agent governance for teams. Runtime firewalls tell you what happened; Conduct Guard controls what can happen — signed policy, verified chain, fail-closed by default. Ships with Router (LLM proxy), 20+ compliance packs, canvas UI, and a playbook engine.
Python · TypeScript★ 18↓ 3,824/moAug 29, 2026
npm80Excellenthealth index
lua-ai-global/governanceZero-dependency TypeScript SDK for AI agent governance: policy enforcement, injection detection, tamper-evident audit, and standards mapping (EU AI Act, OWASP, NIST, ISO 42001)
TypeScript★ 25↓ 3,545/moJul 26, 2026
getaxonflow/axonflow-sdk-goOfficial Go SDK for AxonFlow — runtime control, MCP policy enforcement, approvals, and audit trails for production AI
Go★ 1Jul 23, 2026

Synapsor/Synapsor-RunnerLet AI agents query and update Postgres/MySQL without raw SQL, unrestricted schema access, or database credentials in the model; writes stay reviewed.
TypeScript · JavaScript★ 2↓ 5,822/moAug 22, 2026
bookedsolidtech/reaZero-trust governance layer for Claude Code. Policy-enforced MCP gateway with autonomy controls, middleware chain, audit log, HALT kill-switch, and prompt-injection defense.
TypeScript · Shell★ 0↓ 1,950/moJul 27, 2026
PyPI · npm75Goodhealth index
gautamvarmadatla/mcpsafetywardenMCP servers expose tools with no information about what they actually do at runtime. mcpsafetywarden sits between your agent and any MCP server, profiling tool behavior, blocking destructive calls, and running active security audits before you trust them in a workflow.
Python★ 9↓ 2,923/moAug 1, 2026

panguard-ai/panguard-aiOpen-source security platform for AI agents -- audits skills before install, monitors 24/7, shares threat intelligence across all users. | AI Agent 開源安全平台 -- 安裝前審計 skill、24/7 即時監控、社群共享威脅情報。
TypeScript★ 63↓ 1,214/moSep 5, 2026
Packagist73Goodhealth index

fissible/verdictDeterministic authorization boundary for laravel/ai agents — models propose, applications authorize.
PHP★ 2↓ 2,275/moAug 30, 2026
Go · Python★ 12Jul 23, 2026