Skip to main content

AegiLabs security audit agent — runs locally, metered via your AegiLabs key.

Project description

aegi — AegiLabs audit CLI

Runs the AegiLabs security-audit agent on your machine. Your code and targets stay local; only the agent's model calls are routed through the AegiLabs metering proxy using your issued key. Point it at a repo or a URL:

aegi ./path/to/repo          # static audit of a code repository
aegi http://localhost:3000   # authorized assessment of a live target

Install

pipx install aegi

Prerequisite: the Claude Code CLI (claude) must be installed — the agent drives it under the hood. aegi fails fast with a clear message if it's missing.

Configure

You need the Aegi key we issued you. One of:

export AEGI_KEY=aegi_live_...            # env var
# or ~/.aegi/config.toml:
#   key = "aegi_live_..."
# or per-run: aegi --key aegi_live_... ./repo

The proxy URL defaults to AegiLabs' — you don't set it. Precedence for both: flag → env → ~/.aegi/config.toml.

What each mode does

Target Mode Tools Notes
a directory repo Read/Grep/Glob/Bash (read-only) secrets, creds, vulnerable deps, injection/authz sinks
a URL url Bash active assessment — prompts for authorization first (skip with --yes)

Detection is automatic: an existing directory → repo; anything starting http(s):// (or a bare host:port / localhost:port) → url.

Output

Streams progress to the terminal, then writes (stem taken from --out, default aegi-report):

  • aegi-report.pdf — the branded, client-ready report, compiled from the vendored AegiLabs Typst template (report_assets/). Requires typst on PATH (winget install Typst.Typst). Without it, an HTML fallback (aegi-report.html) is written instead.
  • aegi-report.data.json — the structured findings (report-data.json schema); the only file you'd edit to tweak wording before sending.
  • aegi-report.transcript.md — the raw agent transcript (audit trail).

Finally prints tokens used against your quota. Reports are Swedish by default (--lang en for English).

Options

aegi <target> [--max-turns N] [--out report.pdf] [--lang sv|en] [--title T] [--key KEY] [--proxy URL] [--yes]

Prerequisites

  • Claude Code CLI (claude) — the agent drives it.
  • Typst (typst) — compiles the PDF. Optional; HTML fallback otherwise.
  • Scanners (optional, repo mode) — gitleaks, osv-scanner, semgrep, trufflehog. Any that are on PATH are run and used to ground findings; install the ones you want.
  • Python 3.11+.

Notes / limits (v0)

  • URL scope is prompt-enforced, not sandboxed — the agent is told to touch only the target host. Treat as a soft guard; only run against targets you're authorized to test. Hard scope enforcement is planned.
  • Repo mode runs any installed deterministic scanners (gitleaks, osv-scanner, semgrep, trufflehog) and feeds their real output to the agent as ground truth, then the agent triages and writes the report. With none installed it falls back to a read-only LLM review (CVE claims are then memory-based — install scanners to ground them). Scanners are optional: install the ones you want and they're used automatically.
  • Needs Python 3.11+ (uses stdlib tomllib).

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

aegi-0.1.1.tar.gz (136.3 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

aegi-0.1.1-py3-none-any.whl (142.5 kB view details)

Uploaded Python 3

File details

Details for the file aegi-0.1.1.tar.gz.

File metadata

  • Download URL: aegi-0.1.1.tar.gz
  • Upload date:
  • Size: 136.3 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.13.3

File hashes

Hashes for aegi-0.1.1.tar.gz
Algorithm Hash digest
SHA256 46919a27155a42e5d600d1afce50401bd68484395743f6f74bde12f2094bc89e
MD5 a7032f161a01bfbd2b2beab2d4fb0f4c
BLAKE2b-256 b6b61577459d1de50b47286975d89b632c3be742cc6363422d445ce4f8120d89

See more details on using hashes here.

File details

Details for the file aegi-0.1.1-py3-none-any.whl.

File metadata

  • Download URL: aegi-0.1.1-py3-none-any.whl
  • Upload date:
  • Size: 142.5 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.13.3

File hashes

Hashes for aegi-0.1.1-py3-none-any.whl
Algorithm Hash digest
SHA256 6dd8e4b03a713b2452adbdd9a514973d393ba62bcef4e58fdbfc1d654302c465
MD5 8aa8da12d96104ddb88771b9bcdcb9ef
BLAKE2b-256 b1d49c8861d67b2361d08a9467a41576541ae886bc6c2cf80789311e5fe0c8e2

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page