{"repo":"kontext-security/kontext-cli","free":true,"listed":false,"github":"https://github.com/kontext-security/kontext-cli","clone":"git clone https://github.com/kontext-security/kontext-cli.git","description":"Runtime Security for tool-using AI agents, with local policies, pre-action enforcement, and forensic audit trails.","language":"Go","stars":210,"topics":["ai-agents","audit-logging","cli","credential-management","golang","grpc","mcp","oidc","secret-management","security"],"license":"MIT","category":"ai-agents","readme_excerpt":"Website Documentation Dashboard Discord Runtime governance for AI agents, with local policy decisions, pre-action enforcement, and an authorization ledger. Kontext runs alongside AI agents on developer machines and in cloud environments. It receives tool-use events through local hooks, evaluates policy before consequential actions execute, and records decisions and outcomes in an authorization ledger. The decision path stays local; managed deployments can export redacted records to the Kontext dashboard. The agent support matrix is authoritative for each agent and event surface. Blocking is off by default and available only at supported synchronous pre-action hooks. Quickstart Create an install token in the Kontext dashboard when setup asks for one. Setup stores the token in the login keychain, installs hooks for supported agents, and starts a background daemon. Use doctor to check self-serve hook status, daemon health, and the managed export backlog. It exits non-zero when a configured installation is unhealthy. For a self-serve stale daemon, kontext doctor --fix performs the verified restart; other findings include their manual remediation. Re-run kontext setup to rotate the token. Run kontext setup --uninstall to remove the self-serve installation. Self-serve setup currently supports macOS. How it works The decision path is local. A managed deployment adds configuration and record export; it does not require a hosted service to answer every tool call. Core features Kontext","default_branch":null,"files":null,"tree":[],"storefront":"/r/kontext-security","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/kontext-security/kontext-cli/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}