StackGuardian / StackGuardian/tirith

research(policy): governance policies for AI coding agents touching infra

Open
#360 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

research
Dominant language
Python
Stars
165
Forks
42
Avg merge
1d 3h
Merged PRs (30d)
11

Description

Tracked on the public feedback board (idea: govern third-party AI coding agents touching infra).
Governing what third-party AI agents may do to infrastructure is a policy question over documents
Tirith can already read through the json provider — agent/MCP configs, permissions manifests,
audit logs — so the research is the input shape and a starter pack, not an engine change.

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Review the public feedback board idea and Tirith's existing JSON provider, focusing on agent/MCP configs, permissions manifests, and audit logs. Document the relevant input shape and produce a starter pack for governing third-party AI coding agents touching infrastructure, without changing the engine.

Written by the indexing model from the issue text.

Assessment

Tech stack
json
Domain
documentation, infrastructure, security
Issue type
Documentation
Difficulty
4/5
Estimated time
3-5 days
Activity status
Active
Clarity
Mostly clear
Newbie friendliness
45/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.