#150 · Primary category: Cybersecurity & Decryption Tools

hol-guard

agent-security ai-agent-security ai-agents ai-antivirus ai-security claude-code codex cursor devsecops dsh-plugin gemini-cli mcp mcp-security openclaw opencode prompt-injection runtime-security secrets-detection security supply-chain-security

Open-source antivirus for AI agents: block risky tools, secret access, prompt injection, malicious packages, MCP servers, plugins, and skills at runtime.

Project last updated:08/30/26

GitHub Stars

504

Forks

22

Contributors

7

License

Apache-2.0

Why we included this project

When coding agents like Claude Code, Codex, Cursor, or Gemini CLI run on shared machines, one bad tool call can exfiltrate keys or install a malicious package. HOL Guard handles that by sitting between the agent and its tools, inspecting risky operations at runtime: it flags prompt injection, blocks access to secrets, stops bad package installs, and checks MCP servers, plugins, and skills before they execute. Because it runs locally and ships with a separate plugin-scanner package, maintainers can also vet packages inside CI rather than relying on the agent to behave. Teams with real supply-chain or data-leakage concerns will find the blocking behavior quick to test against their own agent workflows.

Articles for this project

No articles for this project yet.

To suggest a topic or contribute an article, contact us.

Related projects in this category