prismor
Self-hosted runtime control plane for AI agents. Observe or HITL approve or Block rogue tool calls before it executes: secret leaks, prompt injection, supply chain etc in a local dashboard. Agent agnostic (Claude,codex etc.)
File Explorer
Download Latest Version (.zip)- oss-guard.yml
- release-adapters.yml
- release.yml
- security-regression.yml
- pull_request_template.md
- __init__.py
- __init__.py
- pyproject.toml
- README.md
- __init__.py
- __init__.py
- pyproject.toml
- README.md
- __init__.py
- __init__.py
- pyproject.toml
- README.md
- __init__.py
- __init__.py
- pyproject.toml
- README.md
- __init__.py
- __init__.py
- pyproject.toml
- README.md
- __init__.py
- __init__.py
- pyproject.toml
- README.md
- __init__.py
- __init__.py
- pyproject.toml
- README.md
- __init__.py
- __init__.py
- pyproject.toml
- README.md
- index.ts
- index.test.js
- package.json
- README.md
- tsconfig.json
- __init__.py
- __init__.py
- pyproject.toml
- README.md
- __init__.py
- __init__.py
- pyproject.toml
- README.md
- __init__.py
- __init__.py
- pyproject.toml
- README.md
- index.ts
- index.test.js
- package-lock.json
- package.json
- README.md
- tsconfig.json
- LICENSE
- immunity-feed.json
- immunity-feed.json.sig
- immunity-highlevel.png
- prismor-cli-demo.gif
- prismor-cost-latency.png
- prismor-runtime-monitor.gif
- prismor-simulation.png
- readme-demo.gif
- self-hosted-dashboard.png
- self-serve-img.png
- semantic-guard-results.png
- immunity
- prismor
- tests-terminal.jpg
- 02-edit-after-readonly-prompt.png
- 03-scope-list.png
- 05-scope-edit.png
- 06-status-after-block.png
- 07-setup-global-cloak.png
- 09-status-ws2.png
- 12-status-all.png
- 13-uninstall-project.png
- 15-scope-flag.png
- scoped-agent-blocks-implementation.md
- agentic-architecture-review.md
- architecture.md
- attestation-bundle.md
- audit-trail.md
- canary.md
- cli-reference.md
- connecting-to-the-platform.md
- dashboard.md
- decision-contract.md
- demo.gif
- docker.md
- enterprise-tool-access.md
- frameworks-agno.md
- frameworks-autogen-core.md
- frameworks-beeai.md
- frameworks-browser-use.md
- frameworks-claude-agent-sdk.md
- frameworks-crewai.md
- frameworks-google-adk.md
- frameworks-langchain.md
- frameworks-mastra.md
- frameworks-openai-agents.md
- frameworks-overview.md
- frameworks-pydantic-ai.md
- frameworks-semantic-kernel.md
- frameworks-vercel-ai.md
- governance-surfaces.md
- hermes.md
- iam.md
- inference-hook.md
- installation.md
- learning.md
- live-telemetry.md
- mcp-gateway.md
- memory-integrity.md
- network-isolation.md
- openclaw.md
- policy-layers-and-exemptions.md
- prismor-runtime.md
- scoped-agent.md
- sdk-integration.md
- semantic-guard.md
- skill-scanner.md
- supply-chain.md
- sweep-and-cloak.md
- telemetry-receipts.md
- tool-access-precedence.md
- tool-tags.md
- transcript-ingest.md
- demo.py
- demo.sh
- hook_demo.sh
- main.rs
- node_openai_test.mjs
- PrismorOpenAITest.java
- ruby_openai_test.rb
- run_all.sh
- .gitignore
- public.pub
- __init__.py
- LICENSE
- pyproject.toml
- README.md
- threat-object.schema.json
- fetch_nvd_intel.py
- merge_intel.py
- requirements.txt
- sign_feed.sh
- crosswalk.v1.yaml
- eu-ai-act.v1.yaml
- iso-42001.v1.yaml
- nist-ai-rmf.v1.yaml
- owasp-agentic-t10.v1.yaml
- owasp-llm-top10.v1.yaml
- soc2.v1.yaml
- __init__.py
- hermes_plugin_entry.py
- plugin.yaml
- _patterns.sh
- decloak.sh
- env-guard.sh
- read-guard.sh
- recloak-mcp.sh
- scrub-stream.sh
- secret-guard.sh
- sweep-on-stop.sh
- userprompt-guard.sh
- __init__.py
- builtin_patterns.txt
- env_guard.py
- hermes_installer.py
- hermes_plugin_entry.py
- installer.py
- patterns.py
- README.md
- runtime.py
- secrets_store.py
- __init__.py
- approvals.py
- attestation.py
- audit_trail.py
- chain.py
- compliance.py
- deferred.py
- discovery.py
- heartbeat.py
- identity.py
- receipt_signing.py
- remote_policy.py
- telemetry.py
- telemetry_spool.py
- workspace_scope.py
- sample-session.jsonl
- __init__.py
- registry.py
- registry.schema.json
- registry.yaml
- __init__.py
- claude.py
- codex.py
- hermes.py
- __init__.py
- base.py
- corpus.py
- coverage.py
- driver.py
- report.py
- __init__.py
- _post_install.py
- agents.py
- allow.py
- audit.py
- canary.py
- cli.py
- contract.py
- dashboard.html
- data_boundary.py
- default_policy.yaml
- deps.py
- discover.py
- discover_cli.py
- egress.py
- egress_cli.py
- eval_server.py
- exec_targets.py
- feed.py
- hooks.py
- http_ua.py
- iam.py
- immunity_cli.py
- inference_hook.py
- inference_hook_cli.py
- inference_hook_server.py
- intent.py
- learning.py
- mcp_gateway.py
- memory_guard.py
- mirror.py
- mirror_cli.py
- paths.py
- pause.py
- policies.py
- policy_engine.py
- policy_schema.json
- policy_test.py
- principal.py
- README.md
- redaction.py
- remediate.py
- runtime.py
- sandbox.py
- sanitizer.py
- scanner.py
- scoped_agent.py
- semantic_guard.py
- semantic_guard_v2.py
- server.py
- setup_wizard.py
- shell_context.py
- sinks.py
- skills_audit.py
- store.py
- surfaces.py
- sweep-gitleaks.toml
- sweep.py
- tag_rules.py
- tags_cli.py
- token_usage.py
- transforms.py
- trifecta.py
- tui_format.py
- unblock.py
- unlock.py
- version_check.py
- __init__.py
- check_oss_safe.py
- gen_integration_matrix.py
- immunity
- init.sh
- install.sh
- prismor
- query.sh
- run_security_tests.sh
- setup.py
- sweep.sh
- upgrade_feed.py
- verify-memory-guard.sh
- verify_feed.sh
- verify_registry.sh
- __init__.py
- detector.py
- metadata.py
- __init__.py
- engine.py
- osv_lookup.py
- safe_version.py
- typosquat.py
- __init__.py
- cli.py
- hardener.py
- ioc.py
- version_range.py
- .cursorrules.template
- CLAUDE.md.template
- policy-tests-owasp.yaml
- tag_rule_golden.json
- test_adapter_enforce_regression.py
- test_adapter_shim_guard.py
- test_agents_register.py
- test_agents_remote_control.py
- test_allow_cmd.py
- test_approvals.py
- test_attestation.py
- test_audit_feed_signature.py
- test_audit_trail.py
- test_browser_use_adapter.py
- test_cli.py
- test_cloak_atfile_guard.py
- test_cloak_env_guard.py
- test_cloak_installer_cleanup.py
- test_cloak_output_scrub.py
- test_cloak_prompt_stash.py
- test_cloak_secret_guard.py
- test_codex_cloak_runtime.py
- test_compliance.py
- test_connection_credentials.py
- test_coverage_report.py
- test_crewai_adapter.py
- test_data_boundary.py
- test_db_migration.py
- test_defer.py
- test_deny_precedence.py
- test_deps_semver.py
- test_deps_workspace_scope.py
- test_detection_improvements.py
- test_discover_shadow.py
- test_discover_workspace_mcp.py
- test_discovery.py
- test_egress.py
- test_egress_dashboard_api.py
- test_egress_resolve.py
- test_enforcement_floor.py
- test_enterprise_hardening.py
- test_enterprise_telemetry.py
- test_env_agent_key_identity.py
- test_exec_targets.py
- test_exemptions.py
- test_false_positive_fixes.py
- test_floor_constants_parseable.py
- test_framework_adapters.py
- test_heartbeat.py
- test_hook_config_error.py
- test_hook_coverage.py
- test_hooks.py
- test_hooks_extended.py
- test_hooks_gemini.py
- test_hooks_opencode.py
- test_iam.py
- test_inference_hook.py
- test_intent_capture.py
- test_js_lockfiles.py
- test_langchain_adapter.py
- test_learning.py
- test_ledger_concurrency.py
- test_lockfile_integrity.py
- test_mcp_gateway.py
- test_mcp_gateway_connect_guard.py
- test_mcp_guardrails.py
- test_mcp_hook_coverage.py
- test_mcp_mirror.py
- test_mcp_security.py
- test_memory_guard.py
- test_memory_poisoning.py
- test_mirror_marker.py
- test_mirror_passthrough.py
- test_mirror_roster.py
- test_openai_agents_adapter.py
- test_org_tool_denies.py
- test_oss_guard.py
- test_pattern_customization.py
- test_pause.py
- test_pause_org.py
- test_pause_refresh_trigger.py
- test_pause_sig_contract.py
- test_pipeline.py
- test_policies.py
- test_policy_engine.py
- test_policy_yaml_cache.py
- test_prismor_home_consistency.py
- test_prismor_sink_url_pin.py
- test_r4_decisions.py
- test_receipt_signing.py
- test_remediate.py
- test_remote_policy.py
- test_rule_condition.py
- test_rule_exemptions.py
- test_sandbox.py
- test_scanner_codex.py
- test_scope_clear_sticky_mcp.py
- test_scope_mirrored_builtins.py
- test_scope_ux.py
- test_scoped_wildcard.py
- test_script_content_inspection.py
- test_self_protection.py
- test_semantic_guard.py
- test_semantic_guard_syspath.py
- test_session_log_concurrency.py
- test_setup_wizard_selection.py
- test_shell_context.py
- test_sinks_ocsf.py
- test_skill_capabilities.py
- test_skills_audit.py
- test_staged_execution.py
- test_store_dashboard_queries.py
- test_subagent_state.py
- test_supply_chain.py
- test_surface_conformance.py
- test_surfaces.py
- test_tag_rules.py
- test_tags_cli.py
- test_telemetry_chain.py
- test_telemetry_receipt_schema.py
- test_telemetry_title_redaction.py
- test_tool_capability_runtime.py
- test_tool_policy_three_state.py
- test_tool_step_up.py
- test_transcripts.py
- test_trifecta.py
- test_unblock.py
- test_unicode_evasion.py
- test_unlock.py
- test_update_notice.py
- test_workspace_scope.py
- test_workspace_scope_env.py
- .gitignore
- AGENT_INTEGRATIONS.md
- AGENTS.md
- benchmark.md
- CHANGELOG.md
- CLAUDE.md
- CODE_OF_CONDUCT.md
- CONTRIBUTING.md
- immunity-agent.pth
- LICENSE
- LLM_FRAMEWORK_COVERAGE.md
- package.json
- PYPI.md
- pyproject.toml
- README.md
- requirements.txt
- SKILL.md
- TODO.md
# Installation Guide
git clone https://github.com/PrismorSec/prismor
Downloads the entire project code from GitHub to your computer.
cd prismor
Moves into the project folder you just downloaded.
2. Official Install Script
Easy Recommended- Python 3 Python is required to use pip.
pip install prismor
Installs the package published on PyPI directly β no need to clone the source.
Pulled directly from this repo's README.
3. Node.js
EasySEC["<b>Secret and supply-chain protection</b><br/>Cloak placeholders + output scrub Β· Env guard Β· Sweep<br/>Canary tripwires Β· Skill scanner<br/>Supply-chain scoring β npm Β· pip Β· cargo Β· go"]
Type this command into your terminal and run it.
prismor supplychain npm install express # passes, runs npm
Downloads and installs the libraries listed in package.json.
prismor supplychain npm install @tanstack/react-router # BLOCK: IOC match (score 100)
Downloads and installs the libraries listed in package.json.
prismor supplychain pnpm add lodash
Type this command into your terminal and run it.
Pulled directly from this repo's README.
4. Python
Easypip install prismor
Installs the package published on PyPI directly β no need to clone the source.
SEC["<b>Secret and supply-chain protection</b><br/>Cloak placeholders + output scrub Β· Env guard Β· Sweep<br/>Canary tripwires Β· Skill scanner<br/>Supply-chain scoring β npm Β· pip Β· cargo Β· go"]
Type this command into your terminal and run it.
prismor supplychain pip install requests numpy
Installs the Python libraries listed in requirements.txt (or similar).
Pulled directly from this repo's README.
