How it works
1
Capture
The SDK records each action the agent takes β metadata only, never your data.
2
Detect
Actrail replays each closed session and flags risky patterns.
3
Decide
You confirm what should be governed β from a flag, or from the managed catalog.
4
Enforce
A policy blocks the matching action on the agentβs next run.
Where policies come from
Managed catalog
Curated rules Actrail installs when you connect β secret and PII egress, destructive
production actions, and per-vendor tool suites for the MCP tools your agents already
use (GitHub, Slack, Stripe, Postgres, and more). They arrive in shadow, so you can
watch before you block.
Discovered
Actrail flags a risk from your own trails; you resolve the flag into a policy tailored
to what your agent actually did.
Key terms
Trail
One agent session β the ordered timeline of what it did.
Policy
A rule that allows, flags, or blocks an action.
Managed policy
A curated rule from Actrailβs catalog, installed on connect.
Shadow
A policy that reports what it would block, without blocking.
Enforce
A policy that actually blocks the matching action.
Graduate
Promote a policy from shadow to enforce, once thereβs evidence.
Get started
Connect Claude Code
Set up in about five minutes.
Using another agent?
Only Claude Code is supported in beta β contact the team for early access.