{"repo":"faramesh/faramesh-core","free":true,"listed":false,"github":"https://github.com/faramesh/faramesh-core","clone":"git clone https://github.com/faramesh/faramesh-core.git","description":"Governance-as-Code for AI agents. Declarative constraints with deterministic enforcement. Provisioning Identity, Tool-based rules, Brokering Credentials & Ensuring safe deployment","language":"Go","stars":100,"topics":["agentic-ai","ai-agents","deterministic","mcp","agent-governance","agent-governance-toolkit","agent-runtime","agent-security","autogen","crewai"],"license":"Apache-2.0","category":"ai-agents","readme_excerpt":"Every agent tool call is a policy decision. Declare permissions in governance.fms . A local daemon permits, defers, or denies each tool call before it runs. Decisions are hash-chained in a WAL. No SDK lock-in. No cloud required. --- Install Also Homebrew, npx, Go install, or build from git. All install paths → Works with the agent stack you already have LangGraph · LangChain · CrewAI · OpenAI Agents · Claude Agents SDK · Claude Code · Cursor · MCP · AutoGen · AG2 · LlamaIndex · Pydantic AI · Bedrock · Semantic Kernel 13 frameworks today. SDK shim, MCP proxy, HTTP proxy, or A2A. Pick the tier that matches the agent. Framework guides → What you get - Deterministic decisions. Pure functions over policy and the action payload. No LLM in the decision path. - Non-bypassable enforcement. Local daemon. Every tool call goes through it. No SDK to forget to wrap. - Identity-bound. SPIFFE SVIDs, OIDC, or cloud workload identity. Credentials brokered at the call site. - Tamper-evident audit. Decision Provenance Records, hash-chained WAL, optional KMS signing. A policy External emails go to a human. Cancellations require a click. Deletion is impossible without editing the policy. Daily spend ceiling. Every decision lands in a verifiable log. More policy patterns → · FPL reference → How Faramesh compares Faramesh is the local enforcement daemon for tool-call decisions. It's narrower than full-stack agent platforms (Microsoft AGT) and operates outside the model output evaluation layer (Galil","default_branch":null,"files":null,"tree":[],"storefront":"/r/faramesh","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/faramesh/faramesh-core/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}