Govern the future of autonomous AI.

TealTiger is the open-source runtime governance layer for AI agents. Enforce deterministic policy, control spend, and produce audit-ready evidence before an agent reaches a model, tool, or workflow.

runtime allow

Policy trace

SECPrompt injection check
COSTDaily budget ceiling
NHIWorkload identity
EVIDReceipt export

Receipt

hash7fa8...d91c
exportSIEM / OTel
modeFREEZE

6

Framework adapters

11

Governance domains

12

LLM providers

0

External governance services

NVIDIA Inception Program

Part of the NVIDIA Inception ecosystem for AI startups.

Comprehensive controls for production AI systems.

Security, cost, identity, evidence, and workflow governance are treated as one runtime system instead of separate after-the-fact reviews.

Policy engine before execution

FREEZE rules, PLAN_ONLY mode, hot-swap policy bundles, anti-tamper detection, and deterministic decisions without an LLM in the governance path.

1evaluate
2enforce
3export evidence

Audit evidence by default

Cryptographic receipts, reason codes, OpenTelemetry spans, SIEM exports, SARIF, JUnit, and JSON evidence.

Non-human identity

Scope-bound access, Zero Standing Privilege, workload attestation, and revoked-agent enforcement.

Data protection

PII detection, prompt-injection checks, content policy enforcement, Unicode normalization, and encoded output detection.

Financial controls

Budgets by request, session, agent, and day with anomaly alerts and reasoning-token ceilings.

Provider adapter layer

OpenAI, Anthropic, Gemini, Bedrock, Azure OpenAI, Cohere, Mistral, and platform adapters.

Governance domains mapped to real risk.

Every policy decision is legible: a domain, a control ID, a risk reason, a release lineage, and evidence that can be reconstructed later.

Security

Secret leakage, PII exposure, prompt injection, content policy violations

SEC

Since v1.1

Cost

Budget overrun, cost anomaly, reasoning-token abuse, unattributed spend

COST

Since v1.1

Reliability

Provider degradation, cascading failure, fallback chain failure

REL

Since v1.1

Memory

Data provenance gaps, instruction injection via memory, stored-context exfiltration

MEM

Since v1.2

Registry

Unapproved model or tool usage, MCP definition drift, supply chain compromise

REG

Since v1.2

Evidence

Audit gaps, non-repudiation failure, evidence tampering

EVID

Since v1.2

Identity

Excessive standing privilege, missing attestation, scope creep

NHI

Since v1.3

Workflow

Policy bypass, missing approvals, weakened organization controls

FLOW

Since v1.3

Temporal

Stale session context, off-hours execution, cooldown bypass

TEMP

Since v1.3

Drift

Behavioral deviation, model output regression, tool definition mutation

DRIFT

Since v1.3

Observe

Passive monitoring gaps, visibility coverage, telemetry completeness

OBS

Since v1.4

Ship governance where your agents already run.

TealTiger installs through standard developer channels. No hosted governance service is required for policy enforcement.

TypeScript

$ npm install tealtiger

Python

$ pip install tealtiger

Docker

$ docker pull tealtigeradmin/tealtiger-docker
1App request
2Policy engine
3Provider adapter
4Evidence export

Framework integrations. Drop-in governance.

One-line adapter installs that add runtime governance to the frameworks your agents already use. No config changes to existing code.

🏆 Listed on official integration pages: Haystack · AG2 · Hindsight

Designed for teams with real operational obligations.

The product story stays focused: governed AI systems for organizations that need runtime enforcement, cost accountability, and evidence.

Financial services

Model risk management, regulatory audit trails, cost attribution, and separation of duties for agent-initiated transactions.

Healthcare and life sciences

PHI governance in agent memory, consent-aware data handling, deterministic audit evidence, and role-scoped access.

Platform and infrastructure

Multi-agent orchestration governance, MCP supply-chain integrity, cost runaway prevention, and policy-as-code.

Trusted contributors

Recognition for the people raising the bar.

TealTiger highlights trusted contributors directly in the product story, giving sustained community work the visibility it deserves.

Leonardo Franco

Trusted Contributor

Recognized in TealTiger governance for sustained, high-quality work across SDK examples, guardrails, secret detection coverage, policy runtime features, tracing, SARIF export, and cross-SDK parity.

DeepSeek, CrewAI, MCP, Redis memory, and Python async examples

SaaS secret detector coverage and provider key detection

Custom guardrail support across TypeScript and Python SDKs

Policy hot-reload, OpenTelemetry tracing, SARIF export, and streaming evaluator work

Chad Nelson

Trusted Contributor

Open-source contributor focused on practical AI agent tooling, repo readiness, workflow reliability, SDK examples, tests, and contributor documentation.

Provider quickstart examples across TealTiger SDK workflows

Policy examples and contributor-facing documentation

Focused SDK tests and metadata/link cleanup

Narrow, review-ready changes aligned with maintainer guidance

Open-source governance for autonomous AI.

TealTiger is Apache 2.0. Contribute detection patterns, framework integrations, compliance mappings, and policy packs for real-world agent deployments.

Detection patterns

Secret detection, prompt injection signatures, Unicode attack vectors, and incident-informed policy checks.

Framework integrations

Governance adapters for LangChain, CrewAI, AG2, Haystack, Google ADK, Composio, Strands, PydanticAI, and more.

Policy packs

OWASP ASI mappings, industry templates, and control crosswalks for AI risk frameworks.

Contributor program

The first 25 contributors with merged PRs get permanent recognition and early access.