
Git push guardrails for AI coding agents, self-hosted
Project details
Self-hosted git gateway between AI coding agents (Claude Code, Codex, Cursor) and your repo on GitHub, GitLab or Gitea. Every push is checked with deterministic rules, no AI in the checks: leaked API keys, force-pushes, skipped tests, CI told to ignore failures. Clean pushes go through unchanged; rejected ones report the rule, file and line so the agent can fix them. No telemetry.
nimblegate is a self-hosted git gateway that sits between your AI coding agents and your real repository. Agents (Claude Code, Codex, Cursor, Aider or your own scripts) push to the gateway instead of GitHub, GitLab or Gitea. Every push is checked before anything reaches your repo.
The checks are deterministic pattern rules, with no AI involved: the same push always gets the same answer.
.env files, kubeconfig credentials--no-verify, amending pushed commitscurl | sh, rm -rf of protected paths, database schema drift50+ built-in rules, grouped into one-click kits.
Every decision is recorded on a dashboard. Optional extras: PR comments and webhooks when a push is rejected (Auto-PR), alerts when two agents edit the same files, and a read-only MCP endpoint so agents can ask about their own pushes.
curl -O https://raw.githubusercontent.com/nimblegate/nimblegate/main/compose.yaml
docker compose up -d
The 10-minute quick start ends with the gateway blocking a fake leaked key. Or click around the live demo first.
Comments
0Start the conversation
Share the first comment.