google / google/adk-python-community
Add SidClaw Governance Service integration
- 主要言語
- Python
- スター
- 182
- フォーク
- 75
- PR マージ指標
- 30日以内にマージされた PR はありません
説明
## Summary
Add a governance service integration for Google ADK agents using [SidClaw](https://sidclaw.com) — policy evaluation, human-in-the-loop approval, and tamper-proof audit trails for tool calls.
## Background
This was invited by @rohityan in [google/adk-python#5081](https://github.com/google/adk-python/pull/5081):
> "Hi @VladUZH, Closing this PR here as it belongs to adk-python-community repo. We highly recommend releasing the feature as a standalone package that we will then share through: https://google.github.io/adk-docs/integrations/"
## What It Does
The `SidClawGovernanceService` integrates with ADK's `before_tool_callback` and `after_tool_callback` hooks:
1. **Before tool execution** — evaluates the action against SidClaw policies (allow / deny / require approval)
2. **After tool execution** — records the outcome in SidClaw's hash-chain audit trail
## Implementation
- New module: `src/google/adk_community/governance/`
- Uses the `sidclaw` PyPI package (Apache 2.0, published)
- Async-only (matches ADK callback pattern)
- Configurable per-tool data classifications and approval behavior
- Fail-closed by default when SidClaw is unreachable
- Comprehensive unit tests (20 test cases)
## CLA
Already signed — see [google/adk-python#5081](https://github.com/google/adk-python/pull/5081).
コントリビューションガイド
調査の方向性
src/google/adk_community/governance/ から開始し、ADK の before_tool_callback と after_tool_callback の統合ポイントを確認します。sidclaw パッケージを使用して、ポリシーの判断、承認、監査記録をカバーし、構成可能な分類、fail-closed の動作、および記載されている 20 件の unit-test ケースを検証します。
索引モデルが issue の本文から書いたものです。
評価
- 技術スタック
- python
- 領域
- authorization, security
- issue の種類
- 機能追加
- 難易度
- 4/5
- 見積もり時間
- 3〜5日
- 活発さ
- 静か
- 明瞭さ
- おおむね明確
- 初心者へのやさしさ
- 58/100