Skip to main content

ory-hermes

Ory Agent Security for the Hermes agent framework.

Wraps your Hermes tool registry so every call is authorized against Ory Permissions, audited, and tied to the user → agent identity — built on ory-argus.

pip install ory-hermes

Hermes drives its loop from a {name: callable} tool registry (model_tools). Gate it before handing it to the agent:

from ory_hermes import guard_function_map

tools = guard_function_map(model_tools)   # returns a gated copy of the registry

Tool objects (with a run / _run method) work too:

from ory_hermes import guard_tools

tools = guard_tools([search_tool, shell_tool])

In enforce mode a denied tool raises OryDenialError before the tool body runs; Hermes surfaces the denial and the tool never executes. In observe mode (default) the tool runs and a permission.observe_deny activity event is recorded. Network / rate-limit errors fail open.

The integration is SDK-free: it wraps Hermes' plain Python registry by duck typing. Hermes is installed through its own bootstrap process and does not publish an installable Python SDK, so this package intentionally has no Hermes dependency or external real-SDK compatibility test.

Credentials come from the shared ~/.config/ory-agent-plugins/config.json, so a login performed by any other Ory harness plugin or SDK integration is reused here.

Metadata

Release files for ory-hermes 1.4.2

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for ory-hermes 1.4.2
File Size Uploaded
ory_hermes-1.4.2.tar.gz 6.3 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for ory-hermes 1.4.2
File Interpreter ABI Platform
ory_hermes-1.4.2-py3-none-any.whl Python 3 none any Details

Total release size: 11.4 kB

Release files / ory_hermes-1.4.2.tar.gz

Download URL ory_hermes-1.4.2.tar.gz
Size 6.3 kB
Tags Source
SHA-256 checksum
How to use checksums
dd5d9c033c943280fb314dbf3121fc2f60821878269322aa68724f277cfcd202
BLAKE2b-256 checksum
How to use checksums
6576b1fcdc822b4d7c6111eacd6d1f0eedfce9665f282ac264f25a5e6465588b
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via uv/0.12.21 {"installer":{"name":"uv","version":"0.12.21","subcommand":["publish"]},"python":null,"implementation":{"name":null,"version":null},"distro":{"name":"Ubuntu","version":"24.04","id":"noble","libc":null},"system":{"name":null,"release":null},"cpu":null,"openssl_version":null,"setuptools_version":null,"rustc_version":null,"ci":true}

Release files / ory_hermes-1.4.2-py3-none-any.whl

Download URL ory_hermes-1.4.2-py3-none-any.whl
Size 5.1 kB
Tags Python 3
SHA-256 checksum
How to use checksums
7aa345485b860dee564098eb48c3f389d01ac222c049a19b43f7dcb6de7af99f
BLAKE2b-256 checksum
How to use checksums
eedc4d9a5e9da90d6930517e0a24a6f77e33183cc06f1e9334a8935448d06d7e
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via uv/0.12.21 {"installer":{"name":"uv","version":"0.12.21","subcommand":["publish"]},"python":null,"implementation":{"name":null,"version":null},"distro":{"name":"Ubuntu","version":"24.04","id":"noble","libc":null},"system":{"name":null,"release":null},"cpu":null,"openssl_version":null,"setuptools_version":null,"rustc_version":null,"ci":true}

Release history Release notifications | RSS feed

This release

1.4.2 This release

2 release files

1.4.1

2 release files

1.4.0

2 release files

1.3.1

2 release files

1.3.0

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page