agent-policy-gatewayA policy-enforcement and information-flow-control gateway for AI agent tool calls.
- Checks every tool call against declarative YAML policies, with adapters for MCP, OpenAI and Anthropic tool use.
- Tracks taint across chained calls, so data from untrusted sources cannot reach sensitive tools. Prompt-injection exfiltration is stopped by design rather than by detection.
- Ships with fail-closed audit logging, 1,400+ automated tests and an OIDC trusted-publishing release pipeline in GitHub Actions.
attack success on AgentDojo across 588 attack episodes. Per-value taint kept 100% task utility at 0% compromise on a 90-scenario benchmark.
