Agent-pd – A zero-token audit log to catch rogue Claude Code subagents
Catches denied calls that never reach transcripts—six detectors at zero token cost.
A police department for your Claude Code agents — a logging-only hook + CLI that audits the main agent and every subagent and reports rule offenses (permission bypass, out-of-scope & credential access, self-permissioning, disallowed tools, redundant, off-task) with quoted evidence. Catch-and-report, never blocks.
Hash-chained audit log catches agent violations at zero token cost.
Developers building with Claude Code agents
MLflow · Weights & Biases
Catches denied calls that never reach transcripts—six detectors at zero token cost.
MCP proxy intercepts agent tool calls; no code changes needed. Actual safeguard for runaway agents.
Hash-chained audit logs caught Claude Code attempting to inject staging endpoints into production config.
MCP permission proxy solves real AI agent over-permissioning—88% of orgs hit this problem.
Merkle Mountain Range ledger proves AI agents can't retroactively fake logs—novel crypto primitive.
Agent approval gates and audit logs beat open-source alternatives, but multi-agent governance isn't novel.