Prismor is an AI agent security control plane for enterprises. It is built to keep agents from becoming rogue by intercepting tool calls, applying security guardrails in production, and preserving a traceable record of what each agent does.
Its core functions are interception, blocking, masking, and logging. The page says Prismor catches every tool call before it executes, blocks destructive actions, strips secrets before they reach the model, and records each call in an audit trail that can be read back later. It also shows a live runtime monitor and dashboard views with tool calls, verdicts such as allowed, blocked, and masked, and a full session timeline. The interface also groups activity by environment, including production, staging, and local, and indicates that exports are available from the dashboard.
Prismor is described as working with the OpenAI Agents SDK, MCP agents such as Claude Code and Cursor, LangChain, and CrewAI. It can be set up locally with a CLI, and the page presents a policy-as-code approach in which security rules can be written once and applied from the CLI, with organization defaults, team overrides, and per-person exemptions. It also describes access permission profiles and least-privilege controls that scope what agents can do, such as allowing selected tools while blocking others or masking secret values.
The page describes Prismor as an “AI Agent Security Control Plane” and says it is used by developers. It is presented with both an open-source policy engine and an enterprise control plane, and the benchmark section distinguishes between Prismor (OSS) and Prismor (Enterprise).
Prismor is a Security & compliance platforms project. It focuses on automating vulnerability remediation and compliance in software supply chains using AI agents. Prismor is a B2B product aimed at software development teams and security engineers. It ships for the web and the command line.
Prismor first shipped in 2026. The project is developed in the open on GitHub with 191 stars and 201 commits in the last 90 days. Among its 5 catalogued features are CVE remediation, AI-powered security, and SBOM generation. It exposes integrations via an MCP server.
Summary written by a language model from the project’s public pages.
What PulseGate has recorded for this listing
Closest matches by what these projects do