Project details
Pryxor provides a runtime security layer for AI agents, intercepting every tool call to ensure actions are safe before execution. It allows for the approval of safe actions, blocks forbidden ones, and pauses risky actions for human review, all without exposing sensitive credentials, making AI interactions more secure.
Pryxor: A Runtime Security Layer for AI Agents
Pryxor provides a robust runtime authorization mechanism for AI agent actions, ensuring that even with valid credentials, AI agents can only execute the actions that are deemed safe. This self-hosted runtime gateway critically evaluates each proposed action before it interacts with the underlying systems.
Authorization typically focuses on whether an identity can make an API call. However, Pryxor addresses a more critical question: should this specific action be allowed at this moment? An agent that can read records from a database might inadvertently access or export sensitive data beyond its intended task. Pryxor aims to provide an explicit enforcement mechanism for such scenarios, significantly reducing the risk associated with unintended actions.
When an AI agent proposes an action, Pryxor:
Pryxor supports explicit policies governing actions. For instance:
{
"type": "declarative",
"rules": [
{
"name": "allow-internal-emails",
"when": {
"tool": "send_email",
"to_domain_in": ["company.local"]
},
"then": {
"approve": true
}
},
{
"name": "hold-external-emails",
"when": {
"tool": "send_email"
},
"then": {
"hold": "EXTERNAL_EMAIL",
"message": "External recipients require human approval."
}
}
]
}
Policies are evaluated prior to action execution, ensuring only compliant actions are allowed.
Pryxor is in the early stages of development, suitable for local evaluations and security experiments. Continuous enhancements are planned to ensure better policy semantics, reliable action execution, and enhanced operational capabilities.
Pryxor welcomes contributions in the form of test cases, policy suggestions, executor integrations, and security reviews. Contributions are essential in refining the system's capability and effectiveness.
Pryxor aims to provide a crucial layer of security for AI agents, ensuring that actions are not just authorized but are appropriate and safe, helping organizations effectively manage their AI-driven workflows.
Comments
1Pryxor is open-source and I need real feedbacks. Thanks