Independent control for AI agent actions.
Use agents through routed tools. Put risky actions behind one policy boundary before they send, deploy, push, publish, install, or spend.
Detect, redirect, gate, record
One routed path for risky agent actions, from detection to bounded evidence.
Where agents cross the line from thinking to acting
Choose an action surface to see where the routed control path applies.
The route is the control point
AgentVeil controls configured routes, not the entire host.
Routed actions stay visible
MCP Proxy and configured connector actions can be classified, redirected, approved, blocked and recorded.
- MCP Proxy tool calls
- Configured connector routes
- Local approval and evidence
Keep sensitive data local. Share only bounded proof.
Raw workflow data stays local; shared review uses bounded action facts and hashes.
highredirectsha256:8f2a…c91esha256:34bd…7aa0Connectors
Pick a runtime. The terminal shows the current setup path.
Source: github.com/agentveil-protocol/agentveil-sdk · PyPI: agentveil-mcp-proxy
Delegate actions without handing over control.
Start locally. Add hosted records and team-scoped controls when agents move closer to code, credentials, and sensitive systems.
Core
Open-source control layer for AI-agent workflows.
- Open-source AgentVeil CLI
- Local approval loop
- Basic redirect guidance
- Local evidence and status
- Public fallback path
- No license required
Builder
For solo builders controlling AI-agent development workflows.
- Private policy package
- Advanced redirect controls
- Stronger policy guardrails
- Usage visibility
- 25,000 controlled actions / month
- 14-day trial
Team
For teams controlling agent actions across shared development workflows.
- Shared workspace and team policy controls
- Team approval routing
- Shared action history and decision records
- 90-day shared record retention
- 300,000 routed action decisions / month
- Development workflow controls
Enterprise
For organizations with custom security, deployment, and compliance requirements.
- Custom controlled-action volume
- SSO / SCIM options
- Custom retention and legal hold
- Security review
- Private deployment options
- Custom support and SLA terms
Monthly allowances are based on routed action checks: agent actions evaluated by AgentVeil before execution. Routine checks can allow actions automatically; higher-risk checks can require approval, block, or redirect. Local-only Core usage is free.
FAQ
What does AgentVeil do?
AgentVeil puts a policy boundary in front of configured AI-agent actions. It can allow routine work, ask for approval, block risky actions, redirect to the approved workflow, and keep bounded evidence of the decision.
Does AgentVeil control actions outside routed paths?
No. AgentVeil enforces only on paths explicitly routed through supported connectors, MCP Proxy, SDK gates, wrappers, or custom controlled paths. If an agent still has raw shell, visible credentials, or direct API access, those paths must be removed, sandboxed, or treated as bypassable.
Does AgentVeil guarantee complete agent safety?
No. AgentVeil is not a model-safety layer, EDR, or host-wide sandbox. It reduces risk by moving sensitive actions onto controlled paths and showing what remains bypassable.
What makes AgentVeil different from a plain allow/deny gate?
Block is only one outcome. AgentVeil is designed to return the safer next move: create a draft, open a PR, inspect package risk, request scoped approval, use staging, or stop.
Who is AgentVeil for?
AgentVeil is for developers and teams giving agents real authority: code changes, repo operations, deploys, package installs, external sends, credentials, databases, or sensitive APIs.
How do I install AgentVeil?
Use a connector for Cursor, Claude Code, Codex, or Gemini CLI when that is your agent surface. Use standalone MCP Proxy for MCP tools. Use SDK/API routes for workflows that need a controlled action path beyond MCP.
What counts toward monthly allowances?
Hosted plans count routed action checks: agent action requests evaluated by AgentVeil before execution. Routine allows count because AgentVeil evaluated them; local-only Core usage is free.
Can I use AgentVeil alongside observability tools like Datadog or Sentry?
Yes. Observability helps teams inspect systems after telemetry exists. AgentVeil sits before execution on routed action paths, then records bounded decision evidence your existing tools can reference.
Does AgentVeil help with EU AI Act readiness?
AgentVeil can help produce technical evidence for configured routed actions and policy decisions. It is not legal advice, certification, or a complete compliance program.