agentguard — policy proxy for agent tool calls
by agentwares-agentguard.vercel.app in Developer tools
Free spend report from an agent log, no key. Hosted proxies: caps, audit export, buy calls.
https://agentwares-agentguard.vercel.app/api/mcp
Last 30 days
- Uptime
- 100%
- Response time
- 262 ms typical, 262 ms slowest 5%
- Last check
- 5 h ago
- Next check
- in 1 h
How to call it
Add it to any MCP client that supports remote servers.
{
"mcpServers": {
"agentguard-policy-proxy-for-agent-tool-calls": {
"type": "http",
"url": "https://agentwares-agentguard.vercel.app/api/mcp"
}
}
}7 tools
- okgate_get_pricing
Machine-readable pricing for okgate hosted: bands (Starter/Pro/Team) with included tool calls per month, the 80% soft alert and 150% hard stop, features, the free trial allowance, `per_call` — buying tool calls outright at POST /api/v1/calls from a prepaid balance, which is the o
- okgate_spend_report
Read an agent log and report what it spent: totals, calls by tool and by class, estimated dollars by rail, loops, the largest single run, and — for every overspend — the okgate band whose cap would have stopped it, the exact cap, and the call that would have tripped it. Needs no
- okgate_create_proxy
Create a hosted okgate proxy in front of an MCP server. Returns the proxy id, the per-customer MCP URL and the proxy key (shown once). Point your agent's MCP client at the URL with `Authorization: Bearer <key>`. Requires an account key.
- okgate_set_policy
Replace a proxy's policy (YAML: mode, upstreams, classify, caps, loop, dry_run, approvals, alerts, chaos, drift). Validated before saving; takes effect within 30 seconds. Requires an account key.
- okgate_get_run
The incident-shaped report for one run: counts (calls, reads, writes, faked, blocked, spend), the call timeline with decisions, dry-run mutations (what would have changed), ledger entries and the audit-chain verification. Requires an account key.
- okgate_export_audit
Export a run's hash-chained audit entries (prev_hash, hash, redacted args) with the Merkle root, for disputes and questionnaires. Verify offline with sha256(prev_hash + canonical(entry)). Requires an account key.
- okgate_recommend_allowlist
Least-privilege recommendation from the proxy's recorded calls: the minimal tool allowlist, argument keys used per tool, and the upstream tools never used (remove them first). No LLM call here; apply it in the dashboard. Requires an account key.
Security scan
- No findings. We scan names, descriptions and tool definitions for hidden instructions and other prompt-injection patterns.
Recent checks
| When | Result | HTTP | Time |
|---|---|---|---|
| 5 h ago | Passed | 200 | 262 ms |