AI tool security proxy: protect any AI tool server with customizable policies, path/command constraints, rate limiting, and audit logging. No code changes required.
LPM treats this as warn-only first-party agent extension lifecycle risk. Explicit global setup installs SolonGate hooks into Claude Code and shell profiles. The installed guard can download and execute replacement hook code from the SolonGate API on later tool calls.
A single source file combines environment access, network access, and code or shell execution; review context before blocking.
dist/shield.jsView on unpkg · L282Source gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
dist/tui/index.jsView on unpkg · L58Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
dist/tui/index.jsView on unpkg · L58Source writes installer persistence such as shell profile or service configuration.
dist/tui/index.jsView on unpkg · L58Package source references a known benign dynamic code generation pattern.
dist/audit/index.jsView on unpkg · L1395Source combines credential-like environment material and outbound requests; review data flow before blocking.
dist/lib.jsView on unpkg · L42Source reaches cloud instance metadata or link-local credential endpoints.
hooks/guard.mjsView on unpkg · L13Package source invokes a package manager install command at runtime.
dist/index.jsView on unpkg · L12900This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/global-install.jsView on unpkgPackage source invokes a package manager install command at runtime.
dist/index.jsView on unpkg · L12900This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/global-install.jsView on unpkgA single source file combines environment access, network access, and code or shell execution; review context before blocking.
dist/shield.jsView on unpkg · L282Source gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
dist/tui/index.jsView on unpkg · L58Source writes installer persistence such as shell profile or service configuration.
dist/tui/index.jsView on unpkg · L58Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
dist/tui/index.jsView on unpkg · L58Package source references a known benign dynamic code generation pattern.
dist/audit/index.jsView on unpkg · L1395Source combines credential-like environment material and outbound requests; review data flow before blocking.
dist/lib.jsView on unpkg · L42Source reaches cloud instance metadata or link-local credential endpoints.
hooks/guard.mjsView on unpkg · L13