Skip to the card

Card 009 of 9932026-09-21 issue

Observed arrival · 2026-09-21

agent-chaperone reads what AI agents ask for—and what comes back

agentchaperone.dev Visit website
Editorial interest 86/100 Selection signal · not a rating of the site

An open-source runtime security layer that screens AI-agent tool calls before execution and tool results for prompt injection.

Landing page captured for the 2026-09-21 issue.
For
Developers operating AI agents with tool access
Worth noticing
Shadow mode records what would have been held without blocking traffic, including misses and model-free deterministic decisions.

Field notes

The project applies separate checks to outgoing tool calls and incoming results, treating fetched text and written files as possible sources of instructions for the agent. Its examples expose the decision numbers rather than presenting only a pass/fail verdict: a write_file call scores 0.91 for destructive behavior, while a returned result scores 0.97 for instructing the reader. The page also records when no model was consulted and warns that screened content leaves the machine.

Observed signals

Read the marks

Editorial observations of this landing page, not a rating.

OpenPublic substance visible
PrettyNotable craft visible
ProPolished or operationally mature
NicheUnusually specific use

One card from the complete issue

A Passport-Sized Place to Begin

246,713 arrived 999 judged 993 catalogued Enter the complete issue
agentchaperone.dev

Landing page observed 2026-09-21. The live site may have changed.