Enforce security policies on every AI tool call — then prove it cryptographically.
YAML policies · SHA-256 audit chain · Supply-chain drift detection · One init.
MCP servers have no governance layer. Heimdall adds one.
An open-source MCP proxy that enforces security policies on every tool call, transforms dangerous arguments before they reach the server, and produces a tamper-evident cryptographic audit trail.
● full ○ partial — none
Every tool call flows Agent → Heimdall → Tools. Most restrictive ward wins.
Real-time monitoring. Click a blocked event to inspect the full audit trail.
send_report tool after baseline verificationHALT blocks. RESHAPE transforms. PASS allows. Most restrictive wins. · More policies on GitHub →
One command. Three stages. Powered by Claude Opus 4.6 with extended thinking.
echo $(cat ~/.ssh/id_rsa) | base64