AAV open-sources a runtime security layer for AI agent actions with MCP approvals
CarlosMarreroAAV · reddit · 2026-09-22
Developer Carlos Marrero released AAV, a runtime security layer for AI agent actions, now open source under Apache-2.0 after pivoting from a commercial product. Core tenet: agent security boundaries shouldn't depend on proprietary clouds. Features include controlling executable actions, human approval for consequential operations (MCP approvals), credential isolation, and verifiable audit receipts. AAV Cloud remains optional for centralized management, but the local enforcement layer is independently usable. Early 0.1.0-alpha, seeking developers and security folks to stress-test it.
More from coding & agent
- Computer use agent + iPhone Mirroring makes local iOS app testing a gamechanger — var_epsilon · 2026-09-22
- Specialized agents with crisp interfaces may beat general-purpose chatbox agents — signulll · 2026-09-22
- Practical walkthrough: Jev for model routing and code-review triage — kristiyanstoyanovAI · 2026-09-22
- Log-scale replot of OpenAI swarm data: 4x agents cost ~2x total tokens — tobyordoxford · 2026-09-22
- Moving a personal AI off the browser tab and onto the desktop: what actually changed — LYKN-ai · 2026-09-22
- MCP solves tool transport, not tool selection: why coding agents still prefer grep — Wise_Reflection_8340 · 2026-09-22