ClawNex
Runtime security for AI agent fleets.
See, scan, and control every conversation your AI agents have with language models. Know who can reach what, what they can do, and where blast radius starts.
AI agents don't just answer anymore — they act. ClawNex gives security teams visibility and control before that becomes a liability.
Autonomous tool calls. Prompts leaving org boundaries. Model routing outside approved surfaces. No auditability. No policy enforcement. No trust boundary visibility.
155-rule scanner detects jailbreaks, injection, exfiltration, encoding tricks, and social engineering in real time.
Every LLM request logged with model, provider, verdict, score, latency, and token count. Filter and investigate.
5 roles, 28 permissions, session-based auth, progressive lockout. The right people see the right panels.
Immutable log of every action. Who did what, when, and why. Searchable, filterable, exportable.
Emergency shield bypass with stated reason, time limit, and full lifecycle audit. Tool of last resort.
Token usage by model, per-agent cost breakdown, anomaly detection. Know where your AI budget goes.
OpenClaw, Hermes, Paperclip, NemoClaw. Connect any agent framework and monitor from one pane.
Generate security summaries, cost analyses, and compliance evidence on demand. PDF, Markdown, or Excel.
Traffic flows through the LiteLLM proxy. Every prompt and response is scanned by the 155-rule shield before reaching the model. Threats are blocked live.
OAuth and subscription providers can't be proxied. The Session Watcher tails agent conversation files on disk and scans them after the fact. Threats are detected, not blocked.
ClawNex makes this distinction explicit so operators know what is protected live, what is observed later, and where the trust boundary actually sits.
Coming in v0.7.0 — the next major release.
Who can reach this agent, what they can make it do, and what happens if the trust model is wrong.
RBAC with 5 operator roles. Append-only audit trail. Break-glass with reason and expiry. Self-hosted. The free tier is production-complete. Enterprise adds organizational scale.
Federated authentication with your corporate identity provider
Hardware keys, authenticator apps, push notifications
Define permission sets beyond the 5 built-in roles
Deploy, start, stop, and update agents remotely from the dashboard
SOC 2 Type II and ISO 27001 evidence packages
Lock sessions to originating IP for high-security environments
Requires Node.js 18+. See full installation guide for standalone deployment, VPS setup, and production configuration.
Apache 2.0 — use it, modify it, ship it.
Built by SOC teams, for SOC teams.
View on GitHub