بنقرة واحدة
agent-governance
AI agent governance — policy enforcement, zero-trust identity, sandboxing (OWASP Agentic Top 10)
التثبيت باستخدام Codex أو Claude انسخ هذا Prompt والصقه في Codex أو Claude أو مساعد آخر ليراجع صفحة Skill ويثبّتها لك.
القائمة
AI agent governance — policy enforcement, zero-trust identity, sandboxing (OWASP Agentic Top 10)
التثبيت باستخدام Codex أو Claude انسخ هذا Prompt والصقه في Codex أو Claude أو مساعد آخر ليراجع صفحة Skill ويثبّتها لك.
استنادا إلى تصنيف SOC المهني
In-process vector database for AI applications — embed vector search, hybrid retrieval, and full-text search directly into your application without managing a separate server.
LLM-powered knowledge extraction CLI — transform unstructured text into structured knowledge (graphs, hypergraphs, spatio-temporal graphs) with a single command.
Give your AI agent one-click internet access — Twitter, Reddit, YouTube, GitHub, Bilibili, and more. Zero API fees.
Generate token-efficient CLIs for AI agents by reading API docs and studying community patterns. Prints Go binaries + Claude Code skills + MCP servers.
Terminal AI coding agent with video input, subagents, MCP support, and ACP editor integration
AI-powered code review CLI — deterministic pipelines + LLM agent, battle-tested at Alibaba scale
| name | agent-governance |
| description | AI agent governance — policy enforcement, zero-trust identity, sandboxing (OWASP Agentic Top 10) |
| tags | ["ai-agents","governance","security","owasp","policy"] |
| related_skills | ["hermes-agent"] |
Policy enforcement, zero-trust identity, and execution sandboxing for AI agents. Covers all OWASP Agentic Top 10.
pip install agent-governance-toolkit
ag-init --project my-agent
# Creates: policies.yaml, audit.log, governance.config.yaml
# policies.yaml
rules:
- name: no-financial-actions
match: "agent.action.type == 'financial'"
action: deny
reason: "Financial actions require human approval"
- name: rate-limit
match: "agent.action.count > 100"
action: throttle
window: "1h"
- name: sandbox-external
match: "agent.action.target == 'external'"
action: sandbox
timeout: 30s
from governance import AgentGovernor
governor = AgentGovernor("policies.yaml")
safe_agent = governor.wrap(my_agent)
# Agent now enforces all policies automatically
response = safe_agent.run("process this data")
ag-audit --agent my-agent --since 24h
ag-audit --agent my-agent --action financial --result denied
| # | Risk | Mitigation |
|---|---|---|
| 1 | Prompt Injection | Input sanitization + context isolation |
| 2 | Tool Misuse | Policy-based tool access control |
| 3 | Privilege Escalation | Zero-trust identity verification |
| 4 | Data Exfiltration | Output filtering + audit logging |
| 5 | Unauthorized Actions | Action approval workflows |
| 6 | Cascading Failures | Execution sandboxing + timeouts |
| 7 | Memory Poisoning | Memory integrity verification |
| 8 | Hallucination Exploitation | Output validation + fact-checking |
| 9 | Over-permissioning | Least-privilege tool access |
| 10 | Supply Chain | Dependency verification |
ag-audit --rotate --keep 30d# Initialize
ag-init --project test-agent
# Verify policies load
ag-validate policies.yaml
# Run a test action through governance
ag-test --action "read file /etc/passwd" --expect deny
# Check audit log
ag-audit --last 10