Skip to content

Add Assay to Agent Firewalls & Gateways#56

Open
Rul1an wants to merge 1 commit into
ProjectRecon:mainfrom
Rul1an:add-assay
Open

Add Assay to Agent Firewalls & Gateways#56
Rul1an wants to merge 1 commit into
ProjectRecon:mainfrom
Rul1an:add-assay

Conversation

@Rul1an

@Rul1an Rul1an commented Jun 14, 2026

Copy link
Copy Markdown

Adds Assay to Agent Firewalls & Gateways (Runtime Protection), alphabetically after AgentGateway. It sits between the agent and the world exactly as the section describes.

Assay is policy-as-code for MCP: a fail-closed proxy that denies risky tool calls before they run, produces offline-verifiable evidence bundles of what actually executed, and enforces IPv4/TCP egress in-kernel via eBPF/LSM and Landlock on Linux. Rust, MIT, offline-first.

Entry kept to one line in the section format. It's deliberately bounded: a gate and an evidence layer, not a prompt-injection or tool-poisoning scanner and not a trust score. Thanks for curating this!

Policy-as-code gate for MCP: a fail-closed proxy that denies risky tool calls
before they run, emits offline-verifiable evidence bundles, and enforces
IPv4/TCP egress in-kernel via eBPF/LSM and Landlock on Linux.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant