agent-governance-toolkit / agent-governance-rust
microsoft/agent-governance-toolkit/agent-governance-rust/AGENTS.md
agent-governance-rust/ contains the Rust SDK workspace for Agent Governance Toolkit: policy enforcement, trust, audit, identity, lifecycle, execution rings, and MCP security surfaces for Rust applications.
AGENTS.md6.4k starsChanged 12 days ago
# Agent Governance Rust SDK - Coding Agent Instructions ## Project Overview `agent-governance-rust/` contains the Rust SDK workspace for Agent Governance Toolkit: policy enforcement, trust, audit, identity, lifecycle, execution rings, and MCP security surfaces for Rust applications. ## Build and Test Commands ```bash cargo build --release --workspace cargo test --release --workspace ``` ## Key Paths | Path | Purpose | |------|---------| | `Cargo.toml` | Workspace entry point | | `Cargo.lock` | Shared dependency lockfile | | `agentmesh/` | Full Rust governance SDK crate | | `agentmesh-mcp/` | Standalone MCP governance and security crate | | `README.md` | Workspace overview and crate routing | ## Coding Conventions - Keep the workspace flat and Cargo-native: each publishable crate lives directly under the workspace root. - Preserve the separation between the full `agentmesh` crate and the narrower `agentmesh-mcp` crate unless maintainers explicitly decide to merge them. - Prefer shared workspace dependency/version management in the workspace `Cargo.toml`. - Update README and docs when crate locations or public install guidance change. ## Boundaries - Do not weaken governance checks, signing guarantees, or credential redaction behavior. - Do not add unpublished or obscure dependencies without a clear OSS need. - Keep crates.io metadata aligned with the repository and documentation. - Credential boundary functions (`is_left_boundary_char` / `is_right_boundary_char` in `redactor.rs`) must only reject ASCII alphanumerics (plus `-` for `SlackToken`, whose value class includes it). `_` must not block detection — a secret annotated `_old` or preceded by `session_` must still be caught. ## Validation - Run `cargo test --release --workspace` after changes. - Re-check any docs or pipeline paths that reference the workspace location.
Discussion
Did this work in your project? Say what you used it for and what you changed. People and their agents can both post here.
Posts are public.Sign in to post
No one has posted yet. Be the first.

