Skip to content
KitploitKITPLOIT
StrumentiExploitsBlog
Log in
Invia
StrumentiExploitsBlog
Invia

Strumenti di Hacking, PenTest e Cybersecurity per il tuo Arsenale di Sicurezza!

Kitploit è una directory di strumenti di hacking, cybersecurity e pentesting. Scopri gli ultimi aggiornamenti dei progetti per trovare vulnerabilità, analizzare sistemi, automatizzare i test e rafforzare la tua sicurezza.

FeedContattoPrivacy© 2026 Kitploit

Directory degli strumenti

Categorie

Vedi tutte le categorie
Loading categories
hol-guard — Open-source antivirus for AI agents: block risky tools, secret access, prompt injection, malicious packages, MCP servers, plugins, and skills at runtime. | Kitploit
Strumenti/GitHubGitHub/hashgraph-online/hol-guard
Defensive ToolsStatic AnalysisVulnerability ScannersConfiguration AuditingMalware AnalysisDevSecOpsUtilities & FrameworksSecret DetectionSupply Chain SecurityAI Security
GitHub
763139716 giorni faRevisionato da Kitploit

Più Popolari

Vedi tutti →

Scopri gli strumenti più utilizzati dalla nostra community.

Esplora tutti gli strumenti

Sfoglia la nostra collezione di strumenti

Vedi tutti gli strumenti →
hashgraph-online/hol-guard

hol-guard

Open-source antivirus for AI agents: block risky tools, secret access, prompt injection, malicious packages, MCP servers, plugins, and skills at runtime.

Vedi RepositorySito web
Condividi
Contenuto non disponibile nella lingua richiesta. Visualizzazione della versione inglese.

HOL Guard: Open-Source Antivirus for AI Agents

HOL Guard Version Plugin Scanner Version HOL Guard Downloads Plugin Scanner Downloads Python 3.10+ CI Publish Container Image OpenSSF Scorecard Vercel OSS Program License GitHub Stars Lint: ruff Ask DeepWiki

HOL whole dark logoStop risky AI actions before they compromise your machine. HOL Guard is a local-first security layer for AI agents, tools, plugins, skills, MCP servers, and package installs.

Install HOL Guard
Read the documentation
PyPI Package (hol-guard)
Report an Issue

HOL Guard reviews agent actions before they run: shell commands, file access, package installs, and MCP tool calls. It detects secret exposure, destructive operations, prompt injection, and supply-chain risks, then allows, blocks, or requests approval according to your policy.

Run it locally without an account. Use the CLI and local dashboard to manage protection, resolve approvals, and inspect decision history. Optional Guard Cloud adds shared history, team policy, and fleet management.

Get started · Supported agents · Plugin scanner · Documentation · Contribute an extension · Development

Install HOL Guard

Requires Python 3.10 or newer and pipx.

pipx install hol-guard
hol-guard init

The first-run wizard discovers supported agents and walks you through protection setup. It asks before each setup change, including opening the dashboard, installing agent integrations, and connecting optional cloud services.

Check your installation:

hol-guard --version
hol-guard status

To update an existing installation:

hol-guard update

For manual setup, see the installation guide. Annotated release notes with upgrade context live at hol.org/guard/releases; raw releases and prereleases are on the GitHub releases page.

What HOL Guard Protects

SurfaceProtection
Shell commands and file accessReviews destructive operations, sensitive file access, credential exposure, and suspicious outbound commands.
Package installsEvaluates supported package-manager operations against supply-chain intelligence before installation.
Plugins, skills, and agent configurationInventories local artifacts and reviews new or changed tools before launch.
MCP servers and toolsInspects server configuration and reviews tool calls through supported hooks and managed proxies.
Prompts and tool resultsScreens supported events for prompt injection and sensitive content.
Approvals and evidenceRoutes decisions to native prompts or the approval center, and records local receipts for review.

Guard connects through native agent hooks, managed MCP proxies, and launch integrations. Coverage depends on the events each agent exposes; the support matrix documents enforcement, approval delivery, and failure behavior per integration.

Supported AI Agents

Codex, Claude Code, GitHub Copilot CLI, Cursor, Cline, Gemini CLI, Grok, Hermes, Kimi Code, Pi, oh-my-pi, OpenClaw, OpenCode, Antigravity, ZCode, and Devin. Paseo is supported through these native provider integrations, with per-provider coverage.

For example, to set up Codex explicitly:

hol-guard install codex
hol-guard run codex --dry-run
hol-guard run codex

The dry run records the current artifact state before launch. For Codex, Guard installs native pre-tool hooks and refuses a managed launch if those hooks are missing or disabled.

Agent support matrix · Troubleshooting

Everyday Use

TaskCommand
Check protection statushol-guard status
Diagnose an agent integrationhol-guard doctor codex
Inspect changes before launchhol-guard diff codex
Review pending approvalshol-guard approvals
Approve or deny a requesthol-guard approvals approve <request-id> / hol-guard approvals deny <request-id>
Read decision historyhol-guard receipts
List tracked artifactshol-guard inventory
Export an AI bill of materialshol-guard abom --format json
Scan workspace dependencieshol-guard supply-chain scan
Connect optional cloud synchol-guard connect

Understand a paused command

Inspect the command's classification and matching rules:

hol-guard command test 'rm -rf ./build'
hol-guard command explain 'git clean -ndx'
hol-guard command extensions command.git --json

command test and command explain inspect the command without executing it or creating an approval. Use hol-guard approvals to resolve a pending request and hol-guard receipts to review the recorded decision.

Scarica lo strumento