Open-source policy enforcement point for LLM agent tool calls on Kubernetes. Every tool call is evaluated against OPA/Rego policy bound to the workload's SPIFFE identity — allowed, blocked, escalated or audited before the tool runs. Includes a two-gate MCP firewall. Apache 2.0.
Available for
Design-partner conversations, policy-authoring questions, and talks on agent tool-call security.