AI agents can run commands before you get a chance to review them. This repo adds a checkpoint.
Prismor is an open-source runtime security tool for builders using AI coding agents and agent frameworks.
It helps you observe agent activity or apply policy-based controls before tool calls execute, with a local dashboard for reviewing what happened.
Key features:
• Observe and enforce modes – start by logging activity, then choose which policy rules block actions
• Agent integrations – supports Claude Code, Codex, LangChain, and other listed agent surfaces
• MCP gateway – evaluates MCP tool calls before forwarding them and scans tool responses for injection
• Supply-chain checks – wraps package installs to score them against threat intelligence before they run
• Signed audit trail – locally hash-chains and Ed25519-signs agent actions for tamper-evident history
It’s open-source (Apache License 2.0 license).
Link in the reply 👇