is-malicious GitHub avatar by luantak

luantak /

Security & Guardrails

is-malicious

CLI security scanner using Jev to inspect source files, build scripts, and CI configs for suspicious patterns before execution.

License: MITLanguage: TypeScriptLast push: 9/18/2026#security-guardrails#cli-git-gates

What Jev Does in this Architecture

Feeds file contents and security criteria into Jev to assess risks such as data exfiltration, obfuscated loaders, and credential leakage.

Key Architecture Benefit

Provides rapid pre-execution safety screening across multiple file formats without needing a heavy static analysis toolchain.

Review & Benchmark Note: Source code verified against pinned commit. Pattern rules and CLI outputs verified; serves as an advisory layer alongside deterministic linters.
Clone Repository
git clone https://github.com/luantak/is-malicious.git

Inspect on GitHub

Check out the upstream repository README, issues, and commit log.

luantak/is-malicious

Architecture Category

Security & Guardrails

Real-time safety guardrails, prompt injection detection, and moderation gates.

View all in this category →

Related Projects in Security & Guardrails

safer-with-jev repository icon by andrelandgraf

andrelandgraf

safer-with-jev

3
Security & GuardrailsMITTypeScript

An HTTP inspection gateway that checks request content with Jev before optionally forwarding it to an HTTPS destination.

What Jev does here

Jev judges prompt injection or unsafe content; local rules forward, flag or block the request.

Adds an inspectable content check ahead of an existing HTTP service.

#security-guardrails#typed-decisions
3 evidence links
Inspect details
pi-jev repository icon by y0usaf

y0usaf

pi-jev

70
Security & GuardrailsMITTypeScript

A Pi extension that flags tool risks before execution and checks output for secrets and failure types.

What Jev does here

Jev scores destructive actions, scope and output risks; configuration chooses warnings or confirmation.

Defaults to shadow mode and fails open on API errors; it is not a standalone security boundary.

#security-guardrails#coding-agents
35 evidence links
Inspect details
Security & GuardrailsMITTypeScript

Adds rule checks to Pi commands and file operations, then uses Jev to assess cases that need further judgment.

What Jev does here

Local rules handle explicit denies and allows before Jev assesses authorization and risk for bash, write, and edit.

Keeps policy and decision records available for adjusting operation gates.

#security-guardrails#coding-agents
22 evidence links
Inspect details