Toolgate Gates Agent Actions With Jev
Toolgate is an open-source firewall for AI agent tool calls, running as a Claude Code hook or MCP proxy. It evaluates destructive, exfiltrating, privileged, off-task, and unauthorized actions before allowing, prompting, or denying them. [GitHub](https://github.com/RiskAverseTech/toolgate)
Toolgate targets the most dangerous gap in agent workflows: turning model intent into real-world side effects. Its layered policy engine is promising, but hosted risk evaluation and imperfect model judgments mean it should complement—not replace—least privilege and sandboxing.
- –Static rules handle obvious hazards before any model call, while Jev evaluates seven broader risk dimensions.
- –It works beyond Claude Code, proxying MCP servers used by Cursor, Claude Desktop, and custom agents.
- –Its write-then-execute ledger addresses a real multi-step attack pattern that one-call classifiers can miss.
- –The project reports 19/20 separation on a paired evaluation and approximately 1-second median latency, though those results are self-reported. [Jev News](https://jevainews.com/news/toolgate/)
- –Redacted tool inputs and recent prompts still leave the machine for hosted evaluation, making privacy and provider trust important deployment considerations.
DISCOVERED
1h ago
2026-10-07
PUBLISHED
1h ago
2026-10-07
RELEVANCE
AUTHOR
AI LABS