provos/ironcurtain
A secure* runtime for autonomous AI agents. Policy from plain-English constitutions. (*https://ironcurtain.dev)
Compiles plain-English constitutions into deterministic security policies enforced at runtime via semantic interposition on MCP tool calls. Supports two architectures: a V8-sandboxed builtin agent and Docker-containerized external agents (Claude Code, Goose) with MITM proxy mediation of LLM API calls and package installations. Every tool invocation is policy-checked independently—allowing, denying, or escalating to the user—ensuring the agent cannot escape restrictions through prompt injection or drift.
118 stars. Available on npm.
Stars
118
Forks
18
Language
TypeScript
License
Apache-2.0
Category
Last pushed
Mar 11, 2026
Commits (30d)
0
Dependencies
24
Get this data via API
curl "https://pt-edge.onrender.com/api/v1/quality/agents/provos/ironcurtain"
Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.