Best for
- Developers and users who need strict security policies for AI agents
- Teams that want to define security boundaries in natural language without sacrificing autonomy
- Security researchers running agents in untrusted environments
This is a framework for building MCP servers or agents, not a server you connect a client to.
IronCurtain provides a secure runtime for AI agents by compiling natural-language security policies into deterministic rules. It supports multiple modes and MCP servers, but as a research prototype, users need to carefully review policies and understand the security model.
Strongest · Maintenance 15/20 Weakest · Security and permissions 5/20
Static review · not runListed 2026-08-07
Read the FMRS scoring method →Runtime:Node.js 22, 24, or 26 (even- · Docker recommended for Dock
ANTHROPIC_API_KEY
Anthropic API key from the Anthropic console; primary LLM provider key, can also be placed in a .env file or ~/.ironcurtain/config..
GOOGLE_GENERATIVE_AI_API_KEY
Google Generative AI API key from Google AI Studio; optional alternative LLM provider.
OPENAI_API_KEY
OpenAI API key from the OpenAI platform; optional alternative LLM provider.
npm install -g @provos/ironcurtainANTHROPIC_API_KEY)ironcurtain setup for the first-start wizardironcurtain mux for interactive sessions.Run `ironcurtain setup` to complete the first-start wizard, then run `ironcurtain start "Summarize the files in ./src"`; the install works if the agent responds and every tool call passes through the policy engine and is recorded in the per-session audit.l.
Once connected, you can ask your AI assistant things like:
IronCurtain is a secure runtime for autonomous AI agents. It compiles human-readable constitutions into deterministic security policies and enforces them at runtime on every tool call, providing safety without sacrificing autonomy. It supports multiple modes including builtin agent (Code Mode) and Docker agent mode, and includes a policy engine, MCP servers, audit logs, and a web UI.
Upstash's official server providing up-to-date third-party library docs for AI coding assistants
AI-powered NPM package analysis MCP server
An independent control layer that gives AI coding agents budgets, brakes, and receipts
GitHub's official MCP server for managing repos, issues, PRs, and workflows via natural language
Source revision d51a3467cbda Data synced 2026-10-11 Read the FMRS scoring method