AI SECURITY INFRASTRUCTUREVERSION 0.2.0 • LOCAL SIMULATION
AI Agent Firewall
Security infrastructure for AI agents, protecting requests before they reach tools, systems and sensitive actions.
AI Agent Firewall
A security layer that evaluates AI agent requests before they reach connected tools and systems.
01 — INSPECT
Evaluate incoming AI agent requests.
02 — ENFORCE
Apply security policies and risk-based decisions.
03 — DECIDE
Allow, review, or block requests.
SECURITY OPERATIONS WORKSPACE
SECURITY OVERVIEW
GLOBAL SECURITY ANALYTICS
SYSTEM STATUS
CASES SUMMARY
RECENT ACTIVITY
SECURITY CONTROL CENTER
SYSTEM STATUS: CHECKING...SECURITY ANALYTICS
TOTAL CHECKS
ALLOWED
REVIEW REQUIRED
BLOCKED
ERRORS
Decision Distribution
Try your first security check
Enter an AI-agent request. See how ZEQCY evaluates it. Nothing is actually executed in simulation mode.
SECURITY POLICY
POLICY VERSION
FINGERPRINT
CONSISTENCY
DRIFT STATUS
POLICY STATE
SECURITY INVESTIGATION CASES
| Case ID | Title | Status | Events | Created | Actions |
|---|
EVIDENCE PACKAGE OFFLINE VERIFICATION
COMPARE EVIDENCE PACKAGES
COMPARISON EVIDENCE REPORT
COMPARISON REPORT HISTORY
| Report ID | Timestamp | State | Added / Rem / Chg | Report Fingerprint |
|---|
OFFLINE COMPARISON HISTORY VERIFICATION
OFFLINE VERIFICATION RECEIPT
VERIFICATION RECEIPT HISTORY
| Receipt ID | Timestamp | Package Valid | Entry / Chain Int | Pkg FP / Rcpt FP |
|---|
OFFLINE RECEIPT HISTORY VERIFICATION
OFFLINE RECEIPT-HISTORY VERIFICATION RECEIPT
OFFLINE VERIFICATION RECEIPT HISTORY
| Receipt ID | Timestamp | Pkg State | Entry / Chain Int | Pkg FP |
|---|
OFFLINE VERIFICATION RECEIPT HISTORY EXPORT
OFFLINE RECEIPT HISTORY VERIFICATION HISTORY
| Verification ID | Timestamp | Pkg State | Entry / Chain Int | Export FP |
|---|
AGENT API CONNECTION
SECURITY EVENT EXPLORER
| TIME | REQUEST ID | AGENT | TOOL | DECISION | STATUS | DETAILS |
|---|---|---|---|---|---|---|
| NO EVENTS FOUND | ||||||
Security Evidence & Timeline
Read-only security investigation tools for chronological analysis, correlation review, evidence reports, and integrity verification.
SECURITY TIMELINE & CORRELATION EXPLORER
EVENT STREAM
ACTIVE CORRELATION GROUPS
How ZEQCY Works
A secure, fail-closed, local-first bridge between your AI agent and the real world.
1. User AI Agent
Your external agent framework sends a request to perform an action.
2. Backend Manager (Local)
Receives the request on http://127.0.0.1:8082, validates the connection code/agent ID, and translates it.
3. ZEQCY Firewall
The core security engine evaluates the request against strict, fail-closed policies.
4. Security Decision
Firewall outputs: ALLOWED, REVIEW_REQUIRED, BLOCKED, or ERROR.
5. Controlled Execution
If ALLOWED, executes safely. If REVIEW_REQUIRED, pauses for human approval. If BLOCKED, rejects immediately.
Connection Experience
1. Start ZEQCY
2. Open Connect Agent
3. Generate one-time Connection Code
4. Enter code in your AI agent
5. Agent securely connects to local Backend Manager
Connection Code (V3)
Uses a temporary, one-time-use PIN system. Binds to a specific Agent ID and Adapter. Cryptographically hashed. No plaintext PINs are persisted.
Onboarding & UX
Features a First-Run Wizard, Policy Presets (Strict, Balanced, Permissive), Windows Autostart, System Tray integration, and Native Notifications.
Fail-Closed Authority
ZEQCY Firewall is the final security authority. It cannot be bypassed.
ALLOWED
Request perfectly matches security policy and is safe for controlled execution.
REVIEW REQUIRED
Request involves sensitive actions. Paused in Approval Center for explicit human consent.
BLOCKED
Request violates security policy. Instantly rejected. AI cannot override this.
ERROR
Malformed request or system failure. Defaults to closed/rejected.
Security Limitations: ZEQCY evaluates decisions locally. Current execution is locked in SIMULATION_ONLY mode. No real-world execution occurs. ZEQCY does not expose internal secrets, API keys, or raw stack traces. ZEQCY is highly secure but not "100% unhackable".
ZEQCY AI Assistant
A deterministic local support engine built directly into the dashboard.
- ✓ Connection Troubleshooting: Diagnoses invalid, expired, or used connection codes.
- ✓ Identity Verification: Detects Agent ID or Adapter mismatches.
- ✓ Health-Aware Diagnostics: Queries local endpoint
http://127.0.0.1:8082/healthdynamically. - ✓ Decision Explanations: Explains exactly why a request was BLOCKED or REVIEW_REQUIRED.
- ✓ Secure Boundaries: Cannot bypass firewall, approve requests, change policies, or expose credentials.
Supported Frameworks
Tested and validated adapters for popular AI agent frameworks.
Generic HTTP
SUPPORTED / VALIDATEDUniversal REST API adapter for custom agents.
LangChain
SUPPORTED / VALIDATEDSeamless LangChain Tool API integration.
CrewAI
SUPPORTED / VALIDATEDNative CrewAI Tool execution integration.
AutoGen
SUPPORTED / VALIDATEDMicrosoft AutoGen function calling adapter.
Developer Integration
Integrate the policy engine into your agent framework.
const decision = await FirewallClient.evaluateRequest({
tool: "DELETE_FILE",
action: "delete",
target: "/example.txt"
});
console.log(decision);
{
"tool": "DELETE_FILE",
"action": "delete",
"target": "/example.txt"
}
decision = firewall.evaluate_request({
"tool": "DELETE_FILE",
"action": "delete",
"target": "/example.txt"
})
print(decision)
Security Response
Structured response returned by the firewall security layer.
SIMULATION MODEDocumentation & Quick Start
Learn how to use the ZEQCY AI Agent Firewall.
Adapter Support Notice
Generic HTTP Agent: Supported/public connection path.
LangChain, CrewAI, AutoGen: Current adapter support (local validation and simulation).
Note: No unrestricted autonomous execution is currently enabled. All frameworks route through the same simulated protection authority.
1 Quick Start Guide
2 Python SDK Integration
ZEQCY currently provides a local Python integration for agent requests. You can connect a local Python AI agent to the firewall to evaluate its tool execution requests. Note: The current v0.2.0 release operates strictly in simulation-only mode. Real tool execution is disabled by the firewall, and external AI APIs are not required.
- Start ZEQCY: Download and run the ZEQCY Firewall locally.
- Import: Include the
zeqcy_agent.pyconnector in your Python project. - Initialize: Configure the connector with your agent's identity.
- Health Check: Safely verify connectivity to the local firewall.
- Evaluate: Submit a simulated agent action.
- Read Decision: Inspect the firewall decision (ALLOWED, REVIEW_REQUIRED, BLOCKED, or ERROR).
3 Framework-Neutral Agent Integration
You can use the framework-neutral adapter to consistently wrap the SDK for different agent implementations. This is an abstraction layer that allows your custom agents to interact seamlessly without duplicating integration logic. Note: This is an integration abstraction, NOT universal framework support. Real tool execution remains disabled.
- Connect: Create/connect to the ZEQCY SDK.
- Adapter: Create an agent adapter.
- Submit: Submit an action through the adapter.
- Receive: Receive the firewall decision safely.
- Handle: Handle the decision appropriately. No tool is executed automatically.
4 Agent Request Interception
You can build a reusable interception workflow using the ZEQCY request interceptor. This allows agent actions to consistently pass through ZEQCY before any future execution layer. Note: Current ZEQCY integration is simulation-only and does not execute tools.
- Action: Agent creates an action intent.
- Intercept: Interceptor receives the action.
- Evaluate: ZEQCY evaluates the action securely.
- Decision: Firewall returns the authoritative decision.
- Gate: Interceptor returns the decision, enabling the future execution layer to use it securely.
5 Lifecycle Hooks
You can attach safe, observational callbacks (hooks) around the ZEQCY request interceptor. Hooks are invoked before interception, after evaluation, or on error. Note: Lifecycle hooks are observational integration points. They do not control ZEQCY security decisions and do not execute tools. Callbacks cannot modify internal state, and callback exceptions are caught safely.
6 Security Context
Security Context provides a structured, framework-neutral mechanism to attach safe observational metadata to agent requests. It is heavily bounded to basic types (strings, numbers, booleans) to protect sensitive data. Note: Security Context is metadata for tracing and integration only. It does not control ZEQCY security decisions and cannot alter firewall logic.
2 Architecture & Simulation
The current release operates strictly in Simulation Mode. The system evaluates AI agent prompts, classifies the risk, and returns a security decision without executing any real-world actions.
- No Real Execution: The system does NOT run shell commands, delete real files, or access your network.
- Security Evaluation: It focuses purely on analyzing intent, matching security rules, and providing the correct decision boundary.
- Authoritative Backend: All decisions are made by the compiled local Python firewall engine, not the web frontend.
3 Understanding Decisions
ALLOWED
The original firewall policy permits the request. In a live system, this would proceed to execution.
REVIEW_REQUIRED
The request requires human oversight and is not executed. It is held for manual approval.
BLOCKED
The firewall identified a high-risk policy violation. The request is permanently blocked.
ERROR
The request could not be safely processed (e.g., malformed data) and is rejected.
4 Security Analytics Query & Filtering
The Local Simulation API provides powerful read-only filtering capabilities for analyzing past security events. Filters respect strictly enforced agent and session isolation boundaries to prevent sensitive metadata leakage.
GET /api/security/events
decision: ALLOWED, BLOCKED, REVIEW_REQUIRED, ERRORagent_id&session_id: Identity isolation filterspattern_type: Filter by security correlation patterns (e.g. MULTI_TOOL_SESSION, CONTEXT_REUSE)workflow: Search by sanitized Security Context referencetool,execution_statusstart_time,end_time: Time-bounded searches
limit (max 100) and offset to navigate large datasets deterministically.
5 Security Timeline & Correlation Explorer
The Timeline Explorer renders a deterministic chronological stream of security events alongside their active correlation groups. It operates entirely in a read-only capacity and enforces the exact same isolation controls as the query engine.
GET /api/security/analytics/timeline
timeline: Array of event objects (timestamp, action, tool, decision, patterns)correlation_groups: Group objects describing aggregated risk patterns
Frequently Asked Questions
ZEQCY is a security infrastructure layer that sits between your AI agent and your system. It evaluates the agent's intent before allowing it to execute tools, preventing destructive or unauthorized actions.
No. Version 0.2.0 operates strictly in Simulation Mode. It evaluates intent as text and determines the security decision, but never executes real filesystem or shell operations.
No. The current release is fully local and self-contained. It does not require an internet connection, API keys, or cloud infrastructure to operate.
No. The Windows EXE package bundles the necessary runtime. You can run it directly without installing Python or external dependencies.
All simulated security evaluations are logged to an immutable audit trail. You can view them in the local Security Console by clicking the Events or Cases tabs.
Currently, only Windows x64 is supported. macOS and Linux support is planned for future releases.
Download ZEQCY v0.2.0
Official stable release. Local-only architecture. No cloud dependencies. ₹0 cost.
Windows Installer
Automated setup with Desktop icon and System Tray support.
Download EXEAD13C3FA9CAD1A3BE632B49121419D37460FD065F3B226A99A3A5330F2EE79F5
Portable ZIP
Standalone archive. Extract and run manually.
Download ZIPFF52D2873D67D193153EFE6EC1BFC3DAE7BC75CC07BA987390DABBE7ECD01F71
INTEGRATION STATUS: Product-Ready Architecture. Real Execution is currently DISABLED (Simulation Only).