Tag
unYOLO is an open-source framework for building credential brokers and policy engines that let AI agents operate GitHub, Hugging Face, or Google Workspace accounts without holding real credentials, enforcing fine-grained local policies, timed grants, and approvals.
The author open-sourced the risk/authorization layer from their live trading system as a standalone fail-closed policy engine that evaluates agent actions before execution, and is seeking agent builders to pilot it.
Microsoft open-sourced the Agent Governance Toolkit, a governance layer for AI agents that enforces policies, identity, sandboxing, and audit logs to ensure safe and compliant autonomous agent operations.
The author argues that current AI agent safety measures like guardrails and monitoring are insufficient, proposing 'external admission' as a stricter pattern where execution authority is withheld until an external authority explicitly allows high-impact actions.