Skip to main content

Agentmetry

A local-first flight recorder for AI coding agents.

Agentmetry hooks the tool lifecycle of Claude Code, Cursor, Codex and Antigravity, writes every tool call, approval and denial to a hash-chained JSONL trail on your machine, and runs sequence detection over the session. A credential read followed by network egress becomes one finding rather than two unremarkable log lines.

Everything runs locally. There are no cloud calls and no telemetry. Forwarding to Elastic ECS, Splunk HEC or a webhook exists and is off unless you configure it.

pip install agentmetry
agentmetry doctor

Check the detection claims yourself

The corpus ships inside the package, so this works from a clean install:

agentmetry benchmark

It replays recorded sessions through the real rule engine and exits non-zero on any missed rule or any false positive. The benign half is the number that matters: any tool can fire on an attack, and a feed that cries wolf gets muted.

What it does not do

  • It is not a CASB. It records the agents you wire in. An unmanaged browser assistant is invisible to it.
  • It is a recorder, not a sandbox. The only enforcement path is pre-execution DLP blocking in the hook.
  • The DLP is regex, not ML. A starting pack you extend in YAML.
  • It is a public alpha. Integration surfaces may still change.

Full documentation, the event schema, and the SIEM integration guides are in the repository.

Apache-2.0.

Release files for agentmetry 0.5.0

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for agentmetry 0.5.0
File Size Uploaded
agentmetry-0.5.0.tar.gz 385.4 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for agentmetry 0.5.0
File Interpreter ABI Platform
agentmetry-0.5.0-py3-none-any.whl Python 3 none any Details

Total release size: 710.2 kB

Release files / agentmetry-0.5.0.tar.gz

Download URL agentmetry-0.5.0.tar.gz
Size 385.4 kB
Tags Source
SHA-256 checksum
How to use checksums
a7c66b034962966107af7859e0f66b58503358b380851f3c0f1842a68abda759
BLAKE2b-256 checksum
How to use checksums
5c69dffad519785f79631aba03ab6394881c6469ff673442d53062deac0f31a9
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/7.0.0 CPython/3.13.14

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Aug 21, 2026.

Transparency log

Release files / agentmetry-0.5.0-py3-none-any.whl

Download URL agentmetry-0.5.0-py3-none-any.whl
Size 324.8 kB
Tags Python 3
SHA-256 checksum
How to use checksums
ef147f1009fc94d97588f7272933e034c532b17c58662d73f8fc60afed1f2639
BLAKE2b-256 checksum
How to use checksums
98a2c55eb0569564e29cbb6215eb7df12ffd59f07f6840a5e4a01fcd7343c866
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/7.0.0 CPython/3.13.14

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Aug 21, 2026.

Transparency log

Release history Release notifications | RSS feed

0.8.0

2 release files

0.7.0

2 release files

0.6.0

2 release files

This release

0.5.0 This release

2 release files

0.4.0

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page