Skip to main content

Trust and assurance tool for AI — apply NIST AI RMF and ISO/IEC 42001 to LLMs and MCP servers.

Project description

CrimsonGuard

Trust your AI. Prove it.

CrimsonGuard applies NIST AI RMF 1.0 and ISO/IEC 42001:2023 to make AI systems reliable, safe, and secure. It produces auditor-ready evidence (OSCAL assessment-results + PDF) mapped to standard controls.

Two audit modes

  • LLM mode — adversarial probes against LLM-powered AI: hallucination, prompt injection, PII leak, bias, and more.
  • MCP mode — security audit against MCP tool servers: indirect prompt injection via tool output, input validation, authz boundary, audit log completeness.

Every finding is tagged to NIST AI RMF subcategories, ISO/IEC 42001 Annex A controls, OWASP GenAI Top 10, and MITRE ATLAS techniques — so you get technical findings and compliance evidence in one scan.

Status

Early development (v0.0.1, alpha). Public v0.1 target: ~6 weeks.

Install (once released)

pip install crimsonguard

Quick start (planned)

# Audit an MCP server
crimsonguard scan-mcp --target bfd-gen --profile process-safety

# Audit an LLM endpoint
crimsonguard scan-llm --target https://api.openai.com --model gpt-4o-mini

# Generate OSCAL + PDF report
crimsonguard report --scan-id <id> --format oscal,pdf

License

Apache-2.0. See LICENSE.

About

Built by the-s-lab — trustworthy AI for process engineering and safety-critical industries.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

crimsonguard-0.1.0.tar.gz (49.7 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

crimsonguard-0.1.0-py3-none-any.whl (54.3 kB view details)

Uploaded Python 3

File details

Details for the file crimsonguard-0.1.0.tar.gz.

File metadata

  • Download URL: crimsonguard-0.1.0.tar.gz
  • Upload date:
  • Size: 49.7 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.14.3

File hashes

Hashes for crimsonguard-0.1.0.tar.gz
Algorithm Hash digest
SHA256 3cca125d1eeb483f3b8893e106a67ad8fc2063f7b6dcf340c6c7c339e773f079
MD5 f2f446653798566f8887b6fbb9d4d72e
BLAKE2b-256 794c44a40c0af524dcc49cf6485a05855269d61a7e90b0eb439d371aacbf276a

See more details on using hashes here.

File details

Details for the file crimsonguard-0.1.0-py3-none-any.whl.

File metadata

  • Download URL: crimsonguard-0.1.0-py3-none-any.whl
  • Upload date:
  • Size: 54.3 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.14.3

File hashes

Hashes for crimsonguard-0.1.0-py3-none-any.whl
Algorithm Hash digest
SHA256 8e24e76f3ac2442a9e00646731de920be5e8129054d5c1c3a2f004ff1a4b455d
MD5 c70f7a6305f5badf0b8ed5c79e271adf
BLAKE2b-256 0b3830983a55902a68183350179fa69010d8c7bf160563cf0a9830aacb68f9c1

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page