The business case · Gateway and egress proxy for agent traffic
agentgateway, by the risk it changes
An open-source proxy for agent traffic, run by the deployer. Its documentation describes three things an agent deployment would feel: outbound destinations allowed only by route, MCP tools filtered by policy so an agent never sees the ones it is not allowed, and access logs kept in a database. Its documentation also says where it fails closed and where it fails open, which is part of the case.
Open source: Apache-2.0 · Linux Foundation (Agentic AI Foundation) · get involved
The deployment: The model's typical deployment, with the answers this project addresses stated as they are without it: can reach the general internet; can read and change the data in its reach; what it did cannot be reconstructed.
The model: the RiskGraph Explorer's 49 facts, 49 risks and 10 roles, copied into this site with its provenance; the register below is computed, not written. How.