Home / Security tooling

agent-off-switch

Find every AI agent identity in Microsoft 365, AWS and GitHub, see what it can reach, and switch it off. Inventory, blast-radius review with SARIF, an ordered off-switch runbook per identity, and a drift gate for CI. Offline on saved read-only exports; it prints commands and never runs them.

Python · MIT · latest v0.1.0

What it is

Copilot agents, MCP connectors and coding agents run as Entra app registrations, managed identities, AWS IAM roles, access keys and GitHub Apps. aos reads saved exports of those, puts every agent identity in one table with its owner, credentials, grants and last use, ranks what it can reach, and prints the exact steps to switch one off.

Standard-library Python 3.10+, offline, read-only. It needs no credentials of its own: you take the exports with read-only commands listed in docs/exports.md.

Install

pip install "git+https://github.com/basitalisandhu/agent-off-switch@v0.1.0"
aos --help

From the README; see the full README for every option.

Releases

Topics: access-review, agent-security, ai-agents, ai-security, aws-iam, cli, entra-id, github-action, github-apps, hacktoberfest, identity-governance, incident-response, kill-switch, microsoft-365, non-human-identity, python, sarif, security-tools, workload-identity