Skip to content
ahokinsonPublic

About

No description, website, or topics provided.

Resources

Contributing

Security policy

Stars

0 stars

Watchers

0 watching

Forks

Repository files navigation

cerberus

cerberus logo: three dog heads over a shield

CI codecov OpenSSF Scorecard

A guard for AI agent tool calls, with three heads.

cerberus is a Rust CLI that judges every state-changing tool call before an agent executes it, regardless of which harness is asking. cerberus guard runs a fail-closed gate and then up to three independent heads:

Head Catches How
risk commands that are dangerous no matter who's running them or why (general risk avoidance) command-pattern scanning via tirith
policy calls that break a rule the org has decided on (governance policy) policy evaluation via cupcake
judgement calls that are only bad because of state nothing in the payload reveals: git state, kubectl/terraform context, the hook payload itself (contextual bad decisions) Rhai-scripted situational checks

All three run by default and can be disabled individually.

git clone https://github.com/ahokinson/cerberus
cd cerberus
cargo install --path crates/cerberus
cerberus init      # writes rules, policies, config, and hook wiring
cerberus doctor    # confirms every head is actually enforcing

It works with Claude Code, Codex CLI, Cursor, Hermes Agent and opencode. Each harness keeps its own hook mechanism; cerberus normalizes them at the edge.

If a head's binary goes missing, the guard fails closed and says why in the next session. cerberus doctor diagnoses it and retests.

Docs

Contributing

See CONTRIBUTING.md for the rule-script API and how to add a rule or a policy, and docs/development.md for build and test tooling. Security issues: SECURITY.md.

License

MIT. See LICENSE.

About

No description, website, or topics provided.

Resources

Contributing

Security policy

Stars

0 stars

Watchers

0 watching

Forks

Releases

Packages

Used by

Contributors

Languages