integrations: add Attenu Guard plugin (per-agent permissions on tool calls and transfers) - #2176
integrations: add Attenu Guard plugin (per-agent permissions on tool calls and transfers)#2176rafaelasor wants to merge 4 commits into
Conversation
|
Thanks for your pull request! It looks like this may be your first contribution to a Google open source project. Before we can look at your pull request, you'll need to sign a Contributor License Agreement (CLA). View this failed invocation of the CLA check for more information. For the most up to date status, view the checks section at the bottom of the pull request. |
|
@googlebot I signed it! |
Shorten catalog_description to fit the card (was 143 chars, now 55) and drop stray em dashes in prose per the integration-review style guide, picked up while rebasing onto a base that had moved 15 commits ahead.
293869a to
123a0a9
Compare
|
Rebased onto main on 09-01 and re-checked the entry against the integration-review checklist. CLA is signed and checks are green. Is there anything else you need from me before a review? |
|
@joefernandez Could you triage this one? It has had no label since it opened on 2026-08-26. It adds one page under |
Adds
docs/integrations/attenu-guard.md(+ catalog icon) for the Attenu Guard ADK plugin (Apache-2.0, PyPIattenu-guard, extraattenu-guard[google-adk]).The plugin is one
BasePlugin(attenu_guard.adapters.google_adk):before_agent_callbackcomputes each sub-agent's permission set as the meet of the parent's and the declared child set when control reaches it (coverstransfer_to_agent,AgentTooland task-mode sub-agents), andbefore_tool_callbackchecks each tool call before the tool body runs. Decisions land in a hash-chained audit log verified offline. Tested against google-adk 2.7.1; the repo ships a scripted-model example (no API key) and a live smoke test.Follows the plugin-page conventions (frontmatter, language tag, Use cases, Prerequisites, Installation, Use with agent, Resources). Disclosure: I maintain attenu-guard. I have signed / will sign the Google CLA on this PR.