decionis/agent-safe-pipeline

Reference architecture for AI agents that propose actions but cannot authorize them — immutable intent capture, an independent Decionis policy verdict (ALLOW/ESCALATE/BLOCK), verified human approval, and a SafeExecutor that consumes a single-use intent-bound grant.

530Stars on the repository
1Mods indexed here, across every type
10d agoLast push, which is what freshness is scored on
Apache-2.0Licence, which decides whether bodies are shown

mcp

01

decionis/agent-safe-pipeline

MCP server Claude CodeCodexCursor +2

Authorize consequential AI agent actions before execution. Runs locally from the @decionis/mcp npm package. Needs 1 environment variable to run.

not rated 530 10d ago A tokens not measured original Apache-2.0