Skip to main content

IRIS governance for OpenAI — Cedar policy on every API call

Project description

iris-openai

Drop-in IRIS governance for the OpenAI Python SDK.

Replace one line:

# client = openai.OpenAI()
client = IrisOpenAI(passport=passport)

Every client.chat.completions.create(), stream(), and client.embeddings.create() call is evaluated against Cedar policy, recorded in the Evidence Vault, and enforced per IRIS_ENV (warn in dev, block in production).

Tool arrays are filtered to passport.tool_permissions; removed tools are logged as IRIS-TOOL-001 (never silently dropped in dev).

Install

pip install iris-openai

Quickstart

See examples/governed_gpt.py.

Environment

IRIS_ENV Behavior
dev Fail open — warnings to stderr, never block
production Fail closed — IrisViolationError on deny

Defaults to dev when unset.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

iris_security_openai-0.2.1.tar.gz (12.2 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

iris_security_openai-0.2.1-py3-none-any.whl (13.9 kB view details)

Uploaded Python 3

File details

Details for the file iris_security_openai-0.2.1.tar.gz.

File metadata

  • Download URL: iris_security_openai-0.2.1.tar.gz
  • Upload date:
  • Size: 12.2 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.1.0 CPython/3.13.12

File hashes

Hashes for iris_security_openai-0.2.1.tar.gz
Algorithm Hash digest
SHA256 a317620c0c2023293d76e7ba617a9e5e61f77bb8ddd449353eabf3698c795381
MD5 e1f22cca1b96cee3f479a43527334c85
BLAKE2b-256 65952a95889a6381c79a62faf1d950301474f59f762a0ee45e52eee77c39dbd0

See more details on using hashes here.

File details

Details for the file iris_security_openai-0.2.1-py3-none-any.whl.

File metadata

File hashes

Hashes for iris_security_openai-0.2.1-py3-none-any.whl
Algorithm Hash digest
SHA256 7344a96e7d70d191ca14e59fd754d4efc172fbccaa64a52c8662a66f7cc5ba08
MD5 cfa56d2cd97e56ad66f0e69d116685da
BLAKE2b-256 6d321787a6ba7512a0e6cfc9a4489806db097342fe735b7a30a7c93ce5a677fe

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page