Skip to main content

XORAS Agentic Environment & Governance Framework v2.0

XORAS Hero Banner

PyPI Version License AST Security Build

XORAS Agentic Environment & Governance Framework is an enterprise-grade multi-agent runtime, dynamic AST security scanner, and cryptographic provenance platform developed by XORAS Systems LLC.


🛡️ AST Security Architecture & Guardrails

XORAS AST Security Shield Architecture

Key Features

  • AST Static Security Gating (env-integrity-sentry): Real-time Abstract Syntax Tree parsing and secret scanning that intercepts dangerous code injections (eval, exec, subprocess shell=True) and credential leaks prior to execution.
  • Cryptographic Trace Receipts (xoras.evidence.v1): Every agent state transition and tool invocation generates an Ed25519 / HMAC SHA-256 signed JSON-L trace receipt for 100% zero-falsification audit trails.
  • Swarm Agent Orchestrator: Multi-agent state graph pipeline coordinating Architect, Engineer, and Auditor roles with consensus gating and fallback remediation.
  • Zero-Drift Specification (.xorasrules & xoras.env.yaml): Standardized environment rules, role permissions, memory hierarchies, and workspace boundary controls.
  • Interactive Web Dashboard & Product Landing Page: Embedded web UI serving live trace logs, AST playgrounds, and product metrics (xoras serve).

Architecture Overview

flowchart TD
    UserRequest["User / Trigger Payload"] --> SwarmOrchestrator["Swarm Orchestrator (Architect)"]
    SwarmOrchestrator --> ASTEngine["AST Security Engine (Auditor)"]
    
    ASTEngine -- "Pass (Safety Score = 1.0)" --> RuntimeHarness["XORAS Runtime Harness (Engineer)"]
    ASTEngine -- "Fail (Restricted Token)" --> RejectReceipt["Log Rejection & Signed Receipt"]
    
    RuntimeHarness --> ToolExec["Subprocess / File I/O Sandbox"]
    ToolExec --> EvidenceSigner["Cryptographic Signer (HMAC / Ed25519)"]
    EvidenceSigner --> JSONLTrace["xoras_agent_traces.jsonl"]

Quickstart & Installation

1. Install Package

pip install xoras-agent-framework

2. Initialize Governance Environment

xoras init

This generates .xorasrules and xoras.env.yaml in your workspace root.

3. Scan Scripts for AST Violations

xoras scan my_script.py

4. Run Scripts in Isolated Sandbox

xoras run my_script.py

5. Serve Interactive Web Dashboard

xoras serve --port 8080

Open http://localhost:8080 to view the live product landing page and interactive AST playground.


Python API Usage

from xoras import XORASAgentEnvironment, SwarmOrchestrator

# Initialize environment
env = XORASAgentEnvironment(config_path="xoras.env.yaml")

# Run multi-agent orchestrator pipeline
orchestrator = SwarmOrchestrator(env=env)
result = orchestrator.run_pipeline(
    task_description="Deploy verified configuration file",
    code_payload='{"status": "active", "version": "2.0.0"}',
    target_path="artifacts/deploy_config.json"
)

print("Pipeline Success:", result["success"])
print("Trace Signature:", result["last_signature"])

Testing

Run the automated test suite:

PYTHONPATH=. pytest tests/

Documentation


License

Distributed under the MIT Enterprise License. See LICENSE for details.
© 2026 XORAS Systems LLC. All rights reserved.

Metadata

Release files for xoras-agent-framework 2.0.1

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for xoras-agent-framework 2.0.1
File Size Uploaded
xoras_agent_framework-2.0.1.tar.gz 16.7 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for xoras-agent-framework 2.0.1
File Interpreter ABI Platform
xoras_agent_framework-2.0.1-py3-none-any.whl Python 3 none any Details

Total release size: 36.2 kB

Release files / xoras_agent_framework-2.0.1.tar.gz

Download URL xoras_agent_framework-2.0.1.tar.gz
Size 16.7 kB
Tags Source
SHA-256 checksum
How to use checksums
08d855f04afc9dfeefbbf0c6c04880ff50b8790c8e4485ebeb2a4395c5099542
BLAKE2b-256 checksum
How to use checksums
2b29c1a102b0338a259a46d4412e9cb4a8573b4b7474cac2cfe116f8ca573241
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/7.0.0 CPython/3.14.7

Release files / xoras_agent_framework-2.0.1-py3-none-any.whl

Download URL xoras_agent_framework-2.0.1-py3-none-any.whl
Size 19.5 kB
Tags Python 3
SHA-256 checksum
How to use checksums
c31667f45079c9005132d5702d61cfdef30de88bc37a75dcdf06b00ce23a40e3
BLAKE2b-256 checksum
How to use checksums
077264d6b25b9ecaec5c1415a023f0e65e704c9ac561bd40c94f38beb05fc370
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/7.0.0 CPython/3.14.7

Release history Release notifications | RSS feed

2.3.0

2 release files

2.2.0

2 release files

2.1.0

2 release files

This release

2.0.1 This release

2 release files

2.0.0

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page