cavi-ai

Secure Agent — AI skill for Claude Code

AI community

🔐 Egress inspection & secret-leak firewall for local AI agents — see what your agents send, catch secrets before they leak, and stop rotating your keys three times a week.

How to install Secure Agent

This entry records only its repository, not the path inside it, so there is no exact command to give. Open cavi-ai/secure-agent and copy the folder into ~/.claude/skills/, or the file into ~/.claude/agents/.

What Secure Agent does

🔐 Egress inspection & secret-leak firewall for local AI agents — see what your agents send, catch secrets before they leak, and stop rotating your keys three times a week. macOS menu bar app + Go daemon.

Alternatives in AI

  • The Pair — Open-source AI pair programming for desktop: a Mentor + Executor agent cross-check each other's code to catch 358 ★
  • Debug Skill — Give your AI agent a real debugger — breakpoints, stepping, variable inspection, and stack traces via CLI 218 ★
  • Open Claude Code Termux — An automated 1-click installer to run the open-source Claude Code leak natively on Android (Termux) and Window 125 ★

README

secure-agent

[![CI](https://github.com/cavi-ai/secure-agent/actions/workflows/ci.yml/badge.svg)](https://github.com/cavi-ai/secure-agent/actions/workflows/ci.yml) [![Go Reference](https://img.shields.io/badge/Go-1.22+-00ADD8?style=flat&logo=go)](https://go.dev/) [![Swift](https://img.shields.io/badge/Swift-6.0-FA7343?style=flat&logo=swift)](https://swift.org/) [![macOS](https://img.shields.io/badge/macOS-14.0+-000000?style=flat&logo=apple)](https://apple.com/macos) [![License](https://img.shields.io/badge/License-MIT-blue.svg)](LICENSE)

**Egress inspection & secret-leak firewall for local AI agents.** See what your agents send, catch secrets before they leak, and stop rotating your keys three times a week.

Secure Agent — live security console

**`secure-agent`** is a lightweight, always-on AI-agent security monitor and harness guard designed for macOS.

**Platform support.** macOS 14+ is the primary target (Endpoint Security telemetry, menubar app, DMG packaging). The Go daemon also builds and runs on **Linux** (`GOOS=linux go build ./...`), where Endpoint Security (`eslogger`) file telemetry degrades gracefully to the transcript scanner and network sampling runs on `/proc` — the guard hooks, egress firewall, fleet, and console all work identically. CI enforces the Linux build + tests on every push.

As AI coding agents (Claude Code, Cursor, Codex, Antigravity, Pi, Qwen Code, opencode, Copilot, etc.) gain increasing autonomy in local development environments, they gain execution privileges to read local sensitive files, mutate shell configurations, access credential stores, and initiate external network connections. `secure-agent` provides a non-intrusive, multi-layered defense system that enforces zero-trust boundaries around AI agent process trees without disrupting developer velocity.


🌟 Key Features

  • 🛡️ In-Harness Secret Guard (PreToolUse Gating)