A Vite plugin to auto-generate Subresource Integrity (SRI) hashes.
Permission enforcement extension for the Pi coding agent.
Nwire — authorization contract + middleware. Authorizer interface (throw-on-deny) + authzMiddleware. Per-action policy tag is opaque to the framework; the authorizer decides what each tag means.
Fail-closed Cedar policy gate + signed receipts for AI agent tool calls. Blocks what breaks the rules before it runs, denies on any policy error, and proves the gate is live with a startup self-test.
Shared policy evaluation engine for node9 — DLP, smart rules, AST shell parsing, shields, loop detection. Pure functions, no I/O. Used by both node9-proxy and the node9 SaaS firewall.
Policy-as-code authorization for AI SDK tool calls, powered by Open Policy Agent .
NestJS authorization — Laravel-style Gates & Policies, @Can guard, resource resolver (zero DB).
Countersign Core API contract — typed REST + ws schema and OpenAPI spec for the cross-vendor agent-spend control plane.
Type-safe IAM policy helpers with auto-generated action catalog from AWS
OpenClaw ATBASH tool-audit plugin. Thin adapter that maps OpenClaw's before_tool_call hook onto @atbash/sdk.
Vinicunca ESLint config
CLI for Policy SDK
Official DriftGard Node.js SDK — evaluate LLM interactions against your compliance policy
A library for evaluating permissions and policies.
Policy and visibility layer for AI agent skills.
Declarative control plane for agent harnesses — one YAML for grounding, tools, memory, and hooks.
Atbash safety guard for LangChain DynamicStructuredTool