Skip to content

Add sofagent to Security, Compliance, & Legal - #424

Open
KongFangXun wants to merge 2 commits into
ccplugins:mainfrom
KongFangXun:main
Open

Add sofagent to Security, Compliance, & Legal#424
KongFangXun wants to merge 2 commits into
ccplugins:mainfrom
KongFangXun:main

Conversation

@KongFangXun

Copy link
Copy Markdown

Adds sofagent to Security, Compliance, & Legal (external entry, both EN and ZH READMEs).

sofagent is a commit-time audit harness for AI coding agents: 24 audit rules scan git diffs (secret leaks, out-of-scope edits, blind modifications without prior reads, prompt injection in commit messages, unauthorized file changes), results land in an HMAC-signed tamper-evident audit history, and MCP tools cover governance aggregation. Fits this section alongside skillfortify / openclaw-security — sofagent is the audit layer for what coding agents actually changed.

  • Type: External (SKILL-based harness, installable via SkillHub/ClawHub; also runs as MCP server)
  • License: MIT
  • Updates both README.md and README-zh.md to keep the two language versions in sync.

I am the author and maintainer of sofagent.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant