Skip to main content

Agentmetry

A local-first flight recorder for AI coding agents.

Agentmetry hooks the tool lifecycle of Claude Code, Cursor, Codex and Antigravity, writes every tool call, approval and denial to a hash-chained JSONL trail on your machine, and runs sequence detection over the session. A credential read followed by network egress becomes one finding rather than two unremarkable log lines.

Everything runs locally. There are no cloud calls and no telemetry. Forwarding to Elastic ECS, Splunk HEC or a webhook exists and is off unless you configure it.

pip install agentmetry
agentmetry doctor

Check the detection claims yourself

The corpus ships inside the package, so this works from a clean install:

agentmetry benchmark

It replays recorded sessions through the real rule engine and exits non-zero on any missed rule or any false positive. The benign half is the number that matters: any tool can fire on an attack, and a feed that cries wolf gets muted.

What it does not do

  • It is not a CASB. It records the agents you wire in. An unmanaged browser assistant is invisible to it.
  • It is a recorder, not a sandbox. The only enforcement path is pre-execution DLP blocking in the hook.
  • The DLP is regex, not ML. A starting pack you extend in YAML.
  • It is a public alpha. Integration surfaces may still change.

Full documentation, the event schema, and the SIEM integration guides are in the repository.

Apache-2.0.

Release files for agentmetry 0.8.0

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for agentmetry 0.8.0
File Size Uploaded
agentmetry-0.8.0.tar.gz 436.6 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for agentmetry 0.8.0
File Interpreter ABI Platform
agentmetry-0.8.0-py3-none-any.whl Python 3 none any Details

Total release size: 781.2 kB

Release files / agentmetry-0.8.0.tar.gz

Download URL agentmetry-0.8.0.tar.gz
Size 436.6 kB
Tags Source
SHA-256 checksum
How to use checksums
59771dc714887f58e495be76f077d11dc8065dd4e6419824c12f296108d766e9
BLAKE2b-256 checksum
How to use checksums
96ff65742cb0de1aef0434029a3bfb111fe76483f3f30124f443d45591e9dcc7
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/7.0.0 CPython/3.13.14

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Sep 19, 2026.

Transparency log

Release files / agentmetry-0.8.0-py3-none-any.whl

Download URL agentmetry-0.8.0-py3-none-any.whl
Size 344.7 kB
Tags Python 3
SHA-256 checksum
How to use checksums
3792570dbbaf76ed80e79308223c24a66a6b5c97f69b1bdd71fd5d075a17a3d2
BLAKE2b-256 checksum
How to use checksums
e017b0d64c993afae530785cde0bd7108b1efaa5fa3bd0c64a8cebe8e54a099c
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/7.0.0 CPython/3.13.14

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Sep 19, 2026.

Transparency log

Release history Release notifications | RSS feed

This release

0.8.0 This release

2 release files

0.7.0

2 release files

0.6.0

2 release files

0.5.0

2 release files

0.4.0

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page