Metadata-Version: 2.5
Name: correctover-runtime-guard
Version: 2.1.5
Summary: Real-time RCE/SSRF/credential-leak interception for AI agents — sub-millisecond full-pass detection (local P50 ~16us). MCP Server mode with diagnose_error, fault patterns and repair suggestions. Freemium; Pro/Enterprise license for full features.
Project-URL: Homepage, https://correctover.com
Project-URL: Documentation, https://correctover.com
Project-URL: Pricing, https://correctover.com/checkout
Author-email: Correctover <wangguigui@correctover.com>
License: Proprietary Commercial License
License-File: LICENSE
Keywords: ai-agent,correctover,credential-leak,guardrail,interception,mcp,rce,real-time,runtime-guard,security,ssrf
Classifier: Development Status :: 4 - Beta
Classifier: Intended Audience :: Developers
Classifier: License :: Other/Proprietary License
Classifier: Programming Language :: Python :: 3.11
Classifier: Programming Language :: Python :: 3.12
Classifier: Topic :: Security
Requires-Python: >=3.11
Requires-Dist: click>=8.0
Requires-Dist: fastmcp>=2.0
Provides-Extra: dev
Requires-Dist: pytest>=7.0; extra == 'dev'
Description-Content-Type: text/markdown

# 🛡️ correctover-runtime-guard

**Real-time RCE / SSRF / credential-leak interception for AI Agent tool calls — sub-millisecond, one full pass over every pattern.**

[![PyPI version](https://img.shields.io/pypi/v/correctover-runtime-guard.svg)](https://pypi.org/project/correctover-runtime-guard/)
[![Python 3.11+](https://img.shields.io/badge/python-3.11+-blue.svg)](https://www.python.org/downloads/)
[![License: Proprietary (freemium)](https://img.shields.io/badge/license-proprietary-lightgrey.svg)]()

## Quick Start

```bash
pip install correctover-runtime-guard
correctover-runtime-guard diagnose "run eval(x) and curl http://169.254.169.254/"
```

## What It Does

Runtime guardrail for AI Agent tool calls — it inspects input **before execution** and
blocks the fault classes that actually appear in MCP/agent incident reports:

- **RCE interception** (CWE-78) — shell command execution, destructive commands, fork bombs
- **SSRF blocking** (CWE-918) — HTTP client calls, cloud metadata endpoints / internal IPs
- **Credential-leak prevention** (CWE-200) — environment access and secret/API-key patterns
- **Injection detection** (CWE-89/CWE-78) — SQL and script-injection patterns
- **MCP Server mode** — `diagnose_error` / `get_fault_pattern` / `get_repair_suggestion`

Each finding maps to a public CWE/CVE threat reference (CVE + CVSS shown only where a
real, NVD-verifiable advisory exists). This is local pattern/taxonomy detection; it is not
a claim of a measured detection rate against any benchmark.

### Performance

Every call runs **one complete pass over all 8 patterns** — it never stops at the first
hit, so the number is stable whether the input is clean or malicious.

| Metric (steady state, warm, local) | Value |
|--------|-------|
| End-to-end `scan()` P50 | ~16 µs |
| End-to-end `scan()` P99 | ~26 µs |
| Regex hot-path-only P50 / P99 | ~14 / ~24 µs |

**Methodology:** Python 3.13, single thread, 50,000 consecutive scans over a fixed input,
after warm-up; P50/P99 taken over the run, with the first and last 1,000 samples matching
(no latency growth with uptime). The first call after process start pays a one-time regex
compilation cost (cold start) and is excluded. These are indicative local measurements,
**not a vendor benchmark** — numbers vary with hardware and workload, so benchmark on your
own target environment.

## Free Tier

50 scans/day — no credit card required. Pro and Enterprise tiers add full diagnosis,
repair strategies, live MCP interception and auto-heal. Pricing and activation:

[correctover.com/checkout](https://correctover.com/checkout)

```bash
export CORRECTOVER_LICENSE_KEY=your-key-here
```

## Related Correctover Tools

| Tool | Install | Description |
|------|---------|-------------|
| **Security Scanner** (JS/TS) | `npx correctover-scan` | CCS audit for MCP configs and published JS/npm bundles |
| **Runtime SDK** (JS/TS) | `npm install correctover` | Runtime verification SDK (CCS 7-dimension, Ed25519 receipts) |
| **Self-Healing Test** | `pip install correctover-test` | Agent self-healing test suite with failover verification |
| **Security Audit** | `pip install correctover-security-audit` | MCP/agent framework audit powered by CCS fault taxonomy v2.5 |
| **Compliance Check** | `pip install correctover-compliance-check` | OAuth 2.1 + CCS + MCP conformance checks |

**Website:** [correctover.com](https://correctover.com)
