agentdfir is an Apache-2.0 Python package for reconstructing AI agent security incidents. It supports local-first, standards-aligned digital forensics and defensive incident response, with integrations for agent and observability evidence.
agentdfir is a Malware analysis & digital forensics project. It focuses on reconstructing and investigating security incidents involving AI agents with defensible forensic evidence. agentdfir is an open-source project aimed at AI security and digital forensics investigators. agentdfir is open source under the Apache-2.0 license. It ships for the command line, and it can be self-hosted.
Behind agentdfir is piyush295, and it first shipped in 2026. Development happens publicly on GitHub with 9 commits in the last 90 days. Key capabilities include forensic reconstruction, incident response, and chain of custody.
Summary written by a language model from the project’s public pages.
What PulseGate has recorded for this listing
Closest matches by what these projects do