Skip to content
KitploitKITPLOIT
OutilsExploitsBlog
Log in
Soumettre
OutilsExploitsBlog
Soumettre

Outils de Hacking, PenTest et Cybersécurité pour votre Arsenal de Sécurité !

Kitploit est un répertoire d'outils de hacking, de cybersécurité et de pentesting. Découvrez les dernières mises à jour des projets pour trouver des vulnérabilités, analyser des systèmes, automatiser les tests et renforcer votre sécurité.

··Flux·Contact·Confidentialité·© 2026 Kitploit

Répertoire d'outils

Catégories

Voir toutes les catégories
Loading categories
Aegis — Desktop monitoring and local security reviews for AI agents, with opt-in policy-controlled execution and MCP action tools. Windows primary; macOS/Linux experimental. | Kitploit
Outils/GitHubGitHub/antropos17/aegis
Defensive ToolsNetwork SecurityThreat IntelligenceLearning & EducationIncident ResponseAI SecurityAnomaly Detection
GitHubantropos17/aegis

Aegis

Desktop monitoring and local security reviews for AI agents, with opt-in policy-controlled execution and MCP action tools. Windows primary; macOS/Linux experimental.

Voir le dépôt
14220120il y a 1 jourVérifié par Kitploit

Populaires

Voir tout →

Découvrez les outils les plus utilisés par notre communauté.

Explorer tous les outils

Parcourez notre collection d'outils

Voir tous les outils →
Site web
Partager
Contenu non disponible dans la langue demandée. Affichage de la version anglaise.

AEGIS

Local monitoring and action review for AI agents

AEGIS helps you see what local AI agents are doing, review agent files before use, and check policies for selected actions. Monitoring records processes, file activity, TCP endpoints and attribution evidence without requiring an agent plugin.

Current source also includes opt-in policy-controlled execution and MCP tools for operator-selected actions. These routes require explicit setup; ordinary agent monitoring does not automatically intercept or block commands.

Open-source, monitor-first, no usage telemetry or cloud sync. Monitoring data is stored locally. Endpoint naming uses DNS queries. Optional AI analysis sends activity metadata to Anthropic on request; update checks contact GitHub. See privacy and key handling.

Release CI Monitor-first MIT License Platform

Download · Start with a task · Documentation · Local demo · Known limits · Report a bug

Current source version: 0.17.0-alpha

The published release is built from its tag; later source changes require a new release.

AEGIS Observatory monitoring workspace with simulated agents and an instance radar

Observatory preview with simulated data, captured from current source on 27 September 2026.

Start with a task

What you want to doWhere to start
See running agents and review their activityMonitoring, then an agent's processes, files or connections
Review a sensitive-file alertAlerts in Observatory, then inspect the captured evidence
Check a project, skill or agent profile before useLocal security: static review, inventory, comparison and offline report import
Check how a selected action matches a policyAction control: choose files and review the captured outcome
Connect selected actions to an agentMCP setup, explicitly configured from a terminal
Explore settings, reports and the other toolsStart here in the sidebar, or Commands (Ctrl K)

The guided interface keeps results above setup, uses distinct icons for each workspace and reveals technical details on request. File and action checks do not execute commands or establish safety. This describes current source; the published installer can contain an earlier UI.

More Observatory views

AEGIS Start here guide

AEGIS local security workspace

AEGIS selected-action workspace

These views use simulated preview data. More screenshots.

What AEGIS observes

LayerCoverage
Processes112 agents (265 process-name signatures), parent-chain and IDE-host detection, with limited WSL and IDE-extension discovery
FilesChanges in configured sensitive directories and agent config paths; Windows open-handle and Restart Manager observations
NetworkTCP endpoints for detected agent PIDs, forward-confirmed reverse DNS, and allowlisted / unknown / flagged verdicts
Behavior73 sensitive-path detection rules across 8 categories, rolling 10-session baselines, anomaly scoring and sequence correlations
Local LLMsOllama and LM Studio runtime probes; other supported runtimes detected by process signature

The Observatory workspace provides a live instance radar, separate agent instances, file and network views, rules, custom agent catalog, AI analysis, reports, audit, statistics and settings. Activity can be filtered and grouped, inspected by stamped instance identity, and exported to JSON, CSV, HTML or ZIP. The agent database and contributor guide describe how to extend detection.

Monitor-first

Default monitoring observes and logs; it does not automatically block or contain agents. Kill, suspend and resume are manual actions. Monitoring presets and endpoint allowlists do not establish that an agent is safe. The opt-in routes below control only selected launches. The Windows Job route bounds the lifetime of its participating descendants. The separate AppContainer CLI route adds Windows access restrictions for one reviewed offline action in a new workspace; other execution routes retain caller privileges.

The sensitive-activity review list is scoped to the current desktop window; marking an alert reviewed does not quarantine its file or grant access.

AEGIS is alpha software. This README describes current source; installed builds contain the features available at their release tag.

Opt-in action control

An operator can select an exact executable, working directory, arguments and environment, then route that action through AEGIS:

Télécharger l’outil