A runtime gate for coding agents. Blocks the tool calls that wreck a repo (force-push main, rm -rf, secret exfiltration, CI wipe) and lets normal build and commit work through. Machine-checked git-branch core (z3); the rest is high-precision heuristics. Tested on 3,790 real CI commands, 0 false blocks.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
process.env. You'll be asked to provide them before it can run.ANTHROPIC_API_KEY— ... python3 demo_hijack.py # a real Claude agent meets a planted injection: it declines, and the gate stands behind itGUARDRAIL_AGENT_IDGUARDRAIL_POLICY_IDGUARDRAIL_POLICY_VERSIONGUARDRAIL_SIGNING_KEYGUARDRAIL_POLICY_SPECGUARDRAIL_PRESET— export =devops # opt-in cloud/DB kill-command denylistGUARDRAIL_AUDIT_LOG— export =~/.qedra/session.jsonl # a real session leaves a verifiable trailGUARDRAIL_ALERT_URL— "": "https://hooks.slack.com/services/..." // optional: alert on every blockGUARDRAIL_WORKSPACE— "": "/path/to/your/repo",GUARDRAIL_ZK[](https://m8ven.ai/mcp/ss1738-qedra-1rtabb)