Skip to content
#

runtime-security

Here are 24 public repositories matching this topic...

Agent Reference Stack for Kubernetes (kars) - an open source stack from Microsoft for running AI agents safely on Kubernetes. Multi-runtime, Foundry-aware, hardened per-agent sandboxes, governed egress, end-to-end encrypted inter-agent mesh.

  • Updated Sep 1, 2026
  • Rust
open-thymos

Governed AI agent runtime with a local-first desktop app + CLI. Chat with any model (Claude, OpenAI, Groq, Ollama, LM Studio); every action passes Intent → Proposal → Commit through signed capability writs, risk-gated approvals, and a replayable hash-chained ledger. Watch it think in the Mind graph. Cognition proposes; the runtime governs.

  • Updated Jun 13, 2026
  • Rust

RAXIS (Runtime Attestation eXchange for Intelligent Systems) — Structural confinement kernel for autonomous AI agents. 12 non-negotiable invariants enforce that intelligence can't do anything authority didn't structurally permit. Isolated microVMs, cryptographic audit chains, credential proxies, fail-closed intent admission.

  • Updated Jul 28, 2026
  • Rust

Secure-execution domain repository providing modular runtime-security components for sandboxing, capability enforcement, cryptographic isolation, audit logging, and policy-driven execution control — designed for building hardened application and infrastructure runtimes.

  • Updated Jul 13, 2026
  • Rust

Add this topic to your repo

To associate your repository with the runtime-security topic, visit your repo's landing page and select "manage topics."

Learn more