stephnangue/warden
An identity-aware egress gateway that replaces cloud credentials with zero-trust access, governing every cloud API call — from developers and pipelines to AI agents and Kubernetes workloads
Integrates with identity platforms like OpenBao, Kubernetes service accounts, and SPIFFE for workload authentication, then issues ephemeral credentials—tokens, pre-signed URLs, or database auth—instead of storing long-lived secrets. Supports multi-provider access (AWS, GCP, Azure, GitHub, Anthropic, databases, storage) through a unified policy engine and audit log, eliminating credential sprawl across AI agents, CI/CD pipelines, data platforms, and microservices.
Stars
17
Forks
3
Language
Go
License
MPL-2.0
Category
Last pushed
Mar 12, 2026
Commits (30d)
0
Get this data via API
curl "https://pt-edge.onrender.com/api/v1/quality/agents/stephnangue/warden"
Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.
Higher-rated alternatives
quantifylabs/aegis-memory
Secure context engineering for AI agents. Content security · integrity verification · trust...
The-17/agentsecrets
Zero-knowledge secrets infrastructure built for AI agents to operate, not just consume.
kahalewai/dual-auth
Dual-Auth provides AGBAC dual-subject Authorization for AI Agents and Humans using existing IAM...
lelu-auth/lelu
The authorization layer for AI Agents
onecli/onecli
Open-source credential vault, give your AI agents access to services without exposing keys.