About

Built with the limits visible.

AgentGuard is developing a private, last-mile policy boundary for consequential agent actions. The current packages expose local contracts and compatibility telemetry; the stronger broker topology is still being tested.

The Bot Club

AgentGuard is built by The Bot Club Pty Ltd — an Australian company (ABN 99 695 980 226) developing open source for agent policy evaluation, local contracts, and explicit assurance boundaries.

The Bot Club ships Tribunal for coding-agent governance, AgentGuard for local agent action-control research and compatibility paths, and Evidencely for AI-powered accounting automation.

Why this exists

Agent actions become difficult to control when the calling process also retains the raw tool, credential, or socket. AgentGuard exists to test a narrower design: the agent sees a mediated tool while a separately owned local broker alone holds the raw capability.

The project does not claim broad market coverage or an exclusive integration position. It is concentrating on one reproducible OpenClaw-to-MCP-stdio path before expanding the scope.

On 1 May 2026, APRA wrote to industry describing observed gaps in AI governance and risk management. That public letter is context for operators; it is not evidence that AgentGuard satisfies a standard or will produce a compliance outcome.

The current reader is a technical founder or operator evaluating whether one private, local action boundary can be made deterministic, non-bypassable within its stated host limits, and independently reproducible.

Where we are

  • v0.11.0 — historical metadata release. Compatibility adapters only; not executor-owned firewall proof.
  • v0.11.2 — current npm and PyPI. Fail-open strict: false is a hard startup error. Named GitHub file-write intercept is documented on the proof page as configured intercept, not isolation.
  • Live SDKs on npm and PyPI under BSL 1.1.
  • Firewall-proof status: pending. The intended MCP-stdio broker must hold the raw capability outside OpenClaw and pass the registered bypass probes before a stronger claim is available.

Working with us

Current conversations are technical evaluations, not paid offers, service commitments, or readiness assessments. If you want to inspect the narrow action path and its limitations, book a 30-minute technical evaluation. We’ll start with the exact capability, caller identity, bypass paths, and evidence you can verify.

Who's writing this

Hani Koshaji — founder, The Bot Club, and maintainer of the AgentGuard project. Reach me at hani@thebot.club or on LinkedIn.

The Bot Club Pty Ltd

ABN 99 695 980 226 · Sydney, Australia · hani@thebot.club