Open source agent permission and audit
Agent Runtime Inspector
ARI retrieves permitted context, checks proposed tool calls through policy, blocks denied actions, and records the decision path on your machine.
Start locally
Install ARI, start the collector and dashboard, then open the local inspection surface.
Connect an MCP agent
Put ARI between an MCP-capable agent and an upstream server to enforce and record actions.
Understand the trace model
See how context, authorization, action, model, and system events connect.
Read architecture articles
Use the long-form articles for the larger architecture behind provenance and retrieval.