AgentOps-AI / AgentOps-AI/agentops

Feature: OWASP ASI06 memory poisoning detection events in AgentOps

オープン
#1,386 コメント 0 件 リアクション 0 件 担当者 0 名 GitHub で見る
主要言語
Python
スター
5.8k
フォーク
619
PR マージ指標
30日以内にマージされた PR はありません

説明

## Summary

AgentOps provides monitoring and observability for AI agents. As memory-enabled agents become more common, **memory poisoning** (OWASP ASI06) is a critical security event class that should be tracked, alerted on, and audited — a natural fit for AgentOps.

## The Problem

Memory poisoning attacks inject malicious content into an agent's persistent memory, causing adversarial behavior in future sessions. These attacks are:
- Silent (no immediate visible failure)
- Persistent (survive across sessions)
- Hard to detect without dedicated scanning

## Proposed Integration

[OWASP Agent Memory Guard](https://github.com/OWASP/www-project-agent-memory-guard) provides ASI06 detection. Integrating with AgentOps:

```python
import agentops
from agent_memory_guard import MemoryGuard

agentops.init()
guard = MemoryGuard()

@agentops.record_action("memory_write")
def safe_memory_write(content: str):
result = guard.scan(content)

if not result.is_safe:
# Record security event in AgentOps
agentops.record(agentops.ActionEvent(
action_type="security_alert",
params={"threat_type": result.threat_type, "content_hash": hash(content)},
returns={"blocked": True}
))
raise SecurityError(f"Memory poisoning blocked: {result.threat_type}")

store_memory(content)
```

## Request

1. Add **security event types** to AgentOps for memory poisoning / ASI06 events
2. Document OWASP Agent Memory Guard as a recommended companion for production agent monitoring
3. Consider a built-in memory safety score in AgentOps session analytics

**PyPI:** `pip install agent-memory-guard`
**OWASP Project:** https://github.com/OWASP/www-project-agent-memory-guard

コントリビューションガイド

コントリビューションガイドを開く

評価

この issue はまだ評価されていません。

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。