Drako

data-ai MCP Server

AI agent security and governance platform for the full lifecycle. Scan before you ship. Govern and block at runtime. No Azure required.

Verified
data-aidata-aiazure
10 views5 stars4 forksNOASSERTION

Why This Matters

Discovered via agent-topic:crewai and last synced 3mo ago.

Verified
Source
agent-topic:crewai
Stars
5
Last synced
3mo ago
Install
Check source

Install

Install instructions not detected yet

Check the source repository for the latest setup steps.

View source instructions
11
Tools
0
Resources
0
Prompts
Standard I/O
Transport

Available Tools (11)

Dimension

What Drako shows you

Category

Rules

Scenario

P50

Detection

Specific Rules

Article

Requirement

AST

FW-008 → FW-009 (auto-imported plugins, no cost guard)

Import

General rules

balanced

strict agents: researcher: source: agents/researcher.py tools: web_search: type: read code_runner: type: execute # ⚠ flagged CRITICAL by scan policies: odd: researcher: permitted_tools: [web_search, file_reader] forbidden_tools: [code_runner] dlp: mode: enforce circuit_breaker: failure_threshold: 5 hitl: triggers: tool_types: [write, execute, payment] spend_above_usd: 100.00 ``` **Autopilot** reads your scan, generates the config, starts in audit mode. When ready: `drako upgrade --balanced` enables enforcement. Industry templates: `drako init --template fintech` · `healthcare` · `eu-ai-act` · `startup` · `enterprise` 📄 [Full config reference →](docs/config.md) · [Policy templates →](docs/policy-templates.md) --- ## Runtime Enforcement One line to protect agents in production: ```python from drako import govern crew = govern(crew) # every tool call passes through enforcement ``` Every tool call goes through a 13-stage pipeline before executing. If a tool is forbidden, carries PII, exceeds spend caps, matches a known threat, or needs human approval — blocked before it runs. ### Key capabilities - 🔒 **DLP** — Presidio-based PII/PCI scanning. Critical PII blocked before reaching downstream APIs. - 👤 **Human-in-the-Loop** — Agent pauses on high-risk actions, escalates to human. Configurable triggers. EU AI Act Art. 14. - ⚡ **Circuit Breaker** — Per-agent AND per-tool. One failing tool doesn't kill the whole agent. - 📋 **Audit Trail** — SHA-256 hash chain with Ed25519 signatures. Tamper-evident, exportable, regulator-ready. - 🌐 **Collective Intelligence** — Anonymous IOC sharing across deployments. One detection protects everyone. Sub-5s propagation. 📄 [Full runtime docs →](docs/runtime-capabilities.md) — covers all 20 capabilities including Trust Score, Intent Fingerprinting, ODD Enforcement, Magnitude Limits, FinOps, Secure A2A, Topology Monitoring, Chaos Engineering, Observability, Alerting, and OTEL/SIEM Export. --- ## Out-of-process proxy Zero code changes. The agent can't bypass what doesn't run in its process. ```bash drako proxy start export OPENAI_BASE_URL=http://localhost:8990/openai/v1 ``` 📄 [Proxy docs →](docs/proxy-mode.md) · [Docker + Helm →](deploy/) --- ## Autopilot Mode Zero-config governance. One command, smart defaults from your scan. ```bash drako init # autopilot (default) — audit-first drako init --balanced # enforcement active with escape hatches drako init --strict # maximum governance for enterprise drako init --manual # full YAML with all sections drako init --template fintech # start from industry template ``` Autopilot analyzes your project and generates a `.drako.yaml` pre-configured with: - **ODD**: Each agent locked to its discovered tools - **DLP**: Audit mode (logging PII, not blocking yet) - **Circuit Breaker**: Threshold 5 failures / 60s window - **HITL**: Active for write/execute tools (auto-allow on timeout) - **FinOps**: Cost tracking enabled Everything starts in audit mode. When you're ready for enforcement: ```bash drako upgrade --balanced # DLP enforce, ODD enforce, HITL reject on timeout drako upgrade --strict # + intent verification, cryptographic audit, magnitude enforce ``` --- ## CI/CD ### GitHub Action The [Drako GitHub Action](.github/actions/drako-scan/) posts inline PR comments on the exact lines where issues are found, uploads SARIF to Code Scanning, and gates merges on governance score. ```yaml # .github/workflows/drako.yml name: Drako Governance on: [push, pull_request] jobs: scan: runs-on: ubuntu-latest steps: - uses: actions/checkout@v4 - uses: actions/setup-python@v5 with: { python-version: "3.12" } - run: pip install drako - run: drako scan . --format sarif > results.sarif - run: drako scan . --fail-on critical --threshold 70 - uses: github/codeql-action/upload-sarif@v3 with: { sarif_file: results.sarif } if: always() ``` ### Pre-commit hook ```yaml # .pre-commit-config.yaml - repo: https://github.com/DrakoLabs/Drako hooks: - id: drako-scan ``` --- ## Supported Frameworks

Tree-sitter

LangChain.js, Vercel AI SDK, Mastra, AutoGen.js (`pip install drako[typescript]`)

Record-keeping

Cryptographic audit trail with policy snapshot references

Template

Focus