"Trust us" is not a security model
Agents touch production code and customer data. Without enforced boundaries, every prompt is one injection away from an incident.
Use case · Enterprise agent governance
LeanCTX is the governance and proof layer for agent fleets: PathJail confines file access, a shell allowlist blocks dangerous commands, secrets are redacted before models see them, budgets cap spend per role, and a signed Evidence Bundle proves what happened — with FinOps cost export and framework coverage (EU AI Act / ISO 42001 / SOC 2). Local-first: nothing leaves the machine.
Same engine. Different workflow. Always the right context.
Agents touch production code and customer data. Without enforced boundaries, every prompt is one injection away from an incident.
Token bills arrive as one number. Which team, which agent, which task? Most stacks cannot attribute a single dollar.
When compliance asks what an agent read and ran in March, a log folder of raw prompts is not an answer.
Everything below ships in the open-source binary today. No roadmap items, no waitlists.
filesystem confinement: agents read only what policy allows
dangerous commands blocked before execution
keys and credentials stripped before any model sees them
OWASP-aligned screening of untrusted content
Ed25519-signed, hash-chained record of reads, commands and savings
signed Evidence Bundle v1 + offline leanctx-verify; EU AI Act / ISO 42001 / SOC 2 framework reports
versioned policy packs with lean-ctx policy coverage; finops export to FOCUS / CloudZero / Vantage + Datadog /metrics
$ lean-ctx doctor$ lean-ctx policy coverage --framework eu-ai-act$ lean-ctx audit evidence --from 2026-01-01 --to 2026-03-31 --out evidence.zip$ lean-ctx finops export --target=focus$ lean-ctx dashboardPathJail, allowlists, redaction and detection in depth.
Learn morePolicy packs, budgets and audit in practice.
Learn moreThe savings receipt, A/B eval, scorecard and Evidence Bundle.
Learn moreEU AI Act / ISO 42001 / SOC 2 coverage and evidence bundles.
Learn moreScore your context controls; see lean-ctx policy coverage.
Learn moreSSO, fleet policies, air-gapped deployment.
Learn moreNothing, and you can verify it. LeanCTX runs locally with zero telemetry. The audit ledger, cache and knowledge store are local files; network egress happens only where your own configuration sends it.
Entries are hash-chained and Ed25519-signed. Any modification breaks the chain, and lean-ctx savings verify proves integrity end to end, exportable for compliance.
Yes. lean-ctx policy coverage scores your active controls against the Context Governance Benchmark and maps them to the EU AI Act, ISO 42001 and SOC 2. lean-ctx audit evidence then exports a signed Evidence Bundle that a standalone leanctx-verify validates offline.
Yes. lean-ctx finops export emits FOCUS 1.2, CloudZero AnyCost or Vantage records, net of injection, and the daemon exposes Datadog and Prometheus /metrics. Cost becomes a line item attributed by day, project, agent, model and tool.
No. Policy checks run in-process in the same Rust binary that serves reads. Microseconds, not round-trips. Governance and compression share one pass.
Free for local use, forever. CI enforces it. One binary, ten minutes to the first measured gain.
Cookie preferences
We use analytics to understand how our site is used. You choose what's allowed — no tracking runs until you decide.
Essential
Site functionality, security, preferences
Analytics
Pageviews & usage patterns · PostHog EU (Frankfurt) · No cross-site tracking
Read our Privacy Policy for full details. You can change your preferences anytime.