CodeGuard Pro is a pre-install security gate for AI coding agents. It blocked the litellm and telnyx TeamPCP attacks in real time — before any scanner had a CVE.
One attack chain. Stolen credentials passed between victims. All connected.
Runs before pip, before commit, inside your AI agent loop.
Known-malicious versions blocked instantly — litellm, telnyx, ultralytics, ctx, SilentSync RAT packages. Updated before CVEs are filed.
Detects malicious .pth files that execute credential stealers silently at Python startup — TeamPCP's primary attack vector.
Flags mutable tag refs and known-compromised actions: tj-actions CVE-2025-30066, Trivy-action, Checkmarx — before your CI runs.
OpenAI, AWS, Stripe, GitHub, Slack, GCP, private keys, JWTs — blocked before git commit via pre-commit hook.
Drop-in MCP server for Claude Code, Cursor, and Codex. Your AI agent checks before every install — zero extra steps.
HMAC-signed feed server with real-time IOC updates. New attacks added within hours, not days. No reinstall required.
One command. Works with any Python project or AI coding agent.