Settings

Theme

Show HN: Heron is open-source security auditor that interviews your AI agents

github.com

2 points by IlyaIvanov0 2 days ago · 7 comments · 1 min read

Reader

Last week security guy in our company asked me to write doc with information about how they work, which data and systems it touches for all my AI agents. "It's too much work" i thought. So i built Heron. It interviews your agent with 10 main questions and smart follow-ups if feel uncertainty. It also has regulatory flags (SOC2, GDPR, EU AI Act etc). As a result you get a full report with all needed information.

Feel free to try. No SDK, no code changes, MIT licensed. Have 4 modes (server, override, scan, skill). Would love feedback and PRs. I hope you find it helpful.

Repo: https://github.com/theonaai/Heron

Tarcroi 2 days ago

Can this be run a second time and compared against a previous audit?

  • IlyaIvanov0OP 2 days ago

    Curious, are you thinking about this for continuous monitoring, or more for before/after comparison when agent get updated?

  • IlyaIvanov0OP 2 days ago

    Thanks for asking. Not yet, but it is in backlog. I will be doing this in the future.

IlyaIvanov0OP 2 days ago

Hi, author here. Would love to answer any questions you have.

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection