Pre-execution blocking
Guard intercepts risky actions before an AI coding agent executes them, including shell commands, secret reads, MCP registrations, config changes, installs, and risky hooks.
HOL Guard is a local security layer for AI coding agents that blocks risky actions before they run, with local approval for Codex, Claude Code, Cursor, and Gemini CLI.
HOL Guard is a local security layer for AI coding agents. It is designed to stop risky actions before they execute, including shell commands, secret reads, MCP changes, and config modifications.
The product is positioned for people using AI coding tools such as Codex, Claude Code, Cursor, Gemini CLI, OpenCode, Hermes, and OpenClaw. It runs on the user’s machine, supports offline scanning, and can be used without creating an account for a single machine.
The site also distinguishes Guard from post-hoc security tools: instead of reporting risks after disclosure or after installation, it checks the action at the point an agent is about to run it. That makes it useful for both individual developers and teams that want a local approval step in front of agent-driven workflows.
Guard intercepts risky actions before an AI coding agent executes them, including shell commands, secret reads, MCP registrations, config changes, installs, and risky hooks.
The product runs locally on your machine and can scan before the harness starts, which lets it work without a network call in the default setup.
Each supported agent gets a tailored integration that wraps the launch command, so Guard can sit in front of the agent rather than only reporting after the fact.
If Guard blocks something you intended, you can review the diff on screen, allow it with one keystroke, and keep moving. The decision is recorded locally.
When you opt in to Guard Cloud, decision receipts can be synced across machines and alerts can be managed through Slack and email.
For maintainers, HOL also offers plugin-scanner to validate extensions in CI, with checks for MCP posture, installability, trust scoring, and marketplace metadata.
Use Guard as a local gate in front of an AI coding agent so shell commands and config edits are reviewed before they run.
Use the on-screen diff and one-keystroke allow flow when an AI agent attempts something legitimate but sensitive, such as a secret read or MCP registration.
Use the product on a laptop or in an environment without reliable connectivity, since local scanning works offline and does not depend on a cloud call.
Use Guard Cloud when a team wants decision receipts synced across machines and alerting through Slack or email, while keeping file contents and prompts local by default.
Use plugin-scanner in maintainer CI to validate plugins before release, then use Guard locally to enforce runtime decisions after deployment.
Yes. The source says Guard is free forever on one machine with full local scanning, and it does not require sign-up, a credit card, or a cloud dependency for local protection.
Guard is designed to run locally and adds less than 50 ms for a typical scan, according to the site. It scans before the harness starts rather than making a network call first.
By default, nothing leaves your machine. The site says Guard never reads file contents server-side. If you opt in to Guard Cloud, only decision receipts are synced, not file contents, prompts, or environment variables.
Guard supports Hermes, OpenClaw, Codex, Claude Code, Cursor, Gemini CLI, and OpenCode. The site says each integration wraps the launch command so Guard can scan before execution.
Yes. Local scanning works offline. Guard Cloud syncs when you are connected and keeps the queue until it can reach the server.
Orca is an Agent Development Environment for shipping with coding agents, running multiple CLI agents in parallel across isolated worktrees, with desktop and mobile workflows.
Firebase Studio is a web-based workspace for full-stack app development with Gemini-assisted coding, app previews, cloud emulators, collaboration, and browser deployment.
Kastra authorization infrastructure for AI systems checks prompts, tool calls, shell commands, API requests, and browser actions before execution.
JetBrains makes developer tools for individuals and teams, including IntelliJ IDEA, PyCharm, DataGrip, WebStorm, Rider, and CLion, with built-in run/debug/test workflows.
小艺 is Huawei’s AI smart assistant for Q&A, writing, document reading, code help, image recognition, and file drag-and-drop.
EZsite AI is an AI website builder that turns a URL into a fullstack React or Vue.js app with hosting, custom domains, code export, and backend features.