Securing AI Agents: Capsule Launches Claw Guard to Prevent Rogue Actions
Capsule Security is addressing emerging AI security risks by monitoring agent behavior to prevent unauthorized or harmful actions. The company’s open-source Claw Guard project is designed to evaluate agent decisions in real time to prevent sensitive data leaks and external exploitation, while encouraging community collaboration to strengthen AI operational security.
Transcript
The last year when we all heard about MCP and tooling protocols and agent workflows, then I realized this is an opportunity, uh, which is super important and interesting for me to tackle. Uh, and that's why we founded Capsule, Really. So who else founded Capsule with you?
So now pa, he's the CEO, uh, and a good friend of mine, we know each other for many years. He has a lot of experience also with cybersecurity and, and startups and, and, uh, yeah, we had this journey together. Wonderful.
Wonderful. So I, I think, you know, look, if I was your age, I'd wanna found a company around AI and agent and security as well. It's such an exciting time.
What exactly about security for Agentic AI and MCP, et cetera, kind of, where do you think, I mean, there's lots of, there's a lot of attack surface there, right? There's lots of ways of, of, of things that are gonna need to be done and secured, but what in particular really kind of focused, you know, is the focus of capsule security? That's a great question.
So, as we all want to have the benefits out of AI agents and the, the, the agent being able to automate some of the tedious work and help us humanity, uh, solve larger problems, uh, then we really want to trust them and we want to make sure that they're doing what they're supposed to do. So we stop rogue agents. That's our mission.
Uh, and, and the way we do that is that we are monitoring their behavior. Every action or every decision that the agent is taking, we are there in runtime, making sure that they're meeting their goal, their purposes, uh, and, and the policy that they're limited or unbounded to. Absolutely.
Very good. So, Laan, what, what a time to be involved in Agen AI security? You know, last week, actually, I think it started the week before this whole thing with Claw, open Claw and, and MBOs and, and the, I, it's almost like out of a sci-fi book, right?
The, the, they, they started self forming. They, they started a, a church of, uh, Arianism. Um, but beyond the, the funny and the wow factor, the fact of the matter is that just like so many other technologies I've seen in my life, my career security was almost an afterthought here.
I think some of it was, yeah, we'll worry about security later. Let, let's see, let's see if it works. Then.
We'll, once it works and people use it, we'll, we'll, we'll look at security. And that's such a, unfortunately, it's an all too common pattern that we see right in, in the world of security. But what do you see from a security point of view and what do you, what's capsule security doing about it?
Great. So we all saw the buzz and, and we actually, uh, I joined as well, right? I have my, my own open claw, uh, block.
Right? Do you around. And it's, it's a great, it's a great, uh, uh, project.
I mean, it's amazing to see what agent can do and how autonomous they can be, right? Uh, Uhhuh, and the way we see that is that you, you can't or you shouldn't stop the innovation, right? You should, you should, uh, try to, to let it happen.
And that's what accelerate, that's what makes, uh, you know, very, as optimistic about the future of, of, of technology and, and making the better, uh, uh, value out of that. Right? So what we realized that in order to help the community, we released an open source project called Claw Guard, which help every open claw human and agent to protect themself from, uh, external threats, external attacks, and help the agent still operating and running effectively while preventing any threats in real time.
Excellent. And so this is called claw guard? That's correct.
Right? The, so Open Cloud had multiple names. They had to change that to some, uh, legal issues.
So now it's called Open Cloud, right. And we decided to claw our solution claw guard, uh, guard, uh, um, it's, it's a common term from guardrails or guardian to protect AI agents. So that's, uh, that's the name we choose.
I love it. And, um, is Clo guard itself open source or It's the agents that are open source. So both open, close, open source, and clo guard is open source.
That's the contribution for us to the community. We keep maintaining that and welcome new contributors, uh, to that project. Got it, got it, got it.
Now, um, what about, so where, well, I guess the question is, and I realize capsule security for those, as I said in the beginning, just emerging from stuff just emerging from stuff. Where can people, is claw guard like on GitHub? Or, or where, where can we get claw guard and get our hands on this?
Yep, it's on GitHub. Um, we also have a, uh, a site that helps people, uh, uh, install that called Cologuard io. So it's very easy to plug in.
It's a plugin for the open door community and the way it's work, I think it's very interesting. So think about it, there is a concept called LLM as a judge, which means that for every action the main agency is taking, OpenCL is taking, while it's gonna, uh, um, execute a tool. It's gonna run a command on your, uh, Mac Mini or do any something that, that operation will be monitored and evaluated by a small security LLM that runs on the device.
So it's very secured, no data leakage, and then it can protect the main agent from going work, from being manipulated. And that's, that's a cool concept where we leveraging AI to protect AI or, or as judge, as the technical term for that Look. Excellent.
So when you say it'll prevent it from being manipulated, I mean, we're hearing all kinds of stories that one agent is manipulating another agent or stealing their information or, you know, making them join a church or something. Uh, what, what, like, talk to us what manipulated what do you mean by manipulated? Great.
So there are a lot of malware out there that are trying to cause agents to leak credentials, uh, to leak sensitive data of their, uh, uh, human operator or their device. Um, we saw some, some crypto campaigns causing agents to leak their, uh, causing to lose all their, uh, funds from the agent. Uh, and, and there's a lot of, you know, threats out there.
'cause that's, that's the wild west, right? And when a human operator running their agent and they like it to have all the benefits out of that, they want to be able to run it with trust that you, you wouldn't steal their credentials or their data or cause any harm, uh, uh, working in their ecosystem, right? So clo guard will evaluate every action that the agent will take, uh, and decide if that's harmful or not.
And if, if it's think it's harmful, it'll consult with its human operator, uh, making sure that, is that really what you wanted me to do? Or is that something that we really trust? And then they can have a decision together, right?
So that's the point of time where the human need to intervene, uh, and, and, and li and have some guards or limits only in, in the times that it matters while letting it, uh, run autonomously for the rest of its time. Very good. Now, um, Ty, I, I'm just trying to put this all together.
You know, they always say there's no perfect time to launch a company, just like there's no perfect time to have a child, right? When I was younger, we, you know, should we have a baby? You try to have a baby, and there's no perfect time when you're gonna have a baby.
There's no perfect time when you're gonna launch your company. But sometimes things happen in the world, right? It it like conspires and things come together and you say, okay, now is when we gotta go out.
Is what happened here with, with open core, is what they're calling it now. Has this, was this the, the, the wave that said, okay, now we, we gotta launch Now, even if we wanted to wait until we had some more ducks in our, in a row, this is the time to, to come out here. This is the time to release claw guard.
Exactly. Uh, we believe that the AI revolution is one of the largest, uh, technology revolution out there, maybe only compared to electricity or the internet, right? And that will, uh, uh, potentially can change anything.
And, and we exactly think that this is the right moment in time, um, to help, to make sure that we can trust this new technology. You know, there is a lot of, uh, we also, the sci-fi movies, uh, in the nineties about the Terminator taking over the metrics, AI agents, uh, controlling us as humanity. Uh, so we definitely think there is a need for a way to secure it, to trust it.
Uh, and that's our call. That's why we found the company. Excellent.
Luda, you know, we, again, brand new company. I don't, is the website up for people to go to a website yet, or That'll be coming soon. So, so we, that will be coming soon.
Um, stay tuned and we're happy to share more information as we move forward. Excellent. But CLO guard is on, on GitHub right now.
What about, is there on GitHub, is there a way to contact you if people have questions, want to contribute, or all of that good stuff? Definitely, uh, contributors are welcome, you know, in the open source community. You can just go in, create a new, uh, pull request or call suggestion, and we will get right to that, making sure that, uh, uh, we help the community to flourish.
Excellent. Excellent. Excellent.
Well, Ladon, what a great time to, as I said before, what a great time to be in this space right now. And with everything going on, I wish you lots of success with, with, uh, capsule security. It's gonna be interesting to see how this m bot, claw bot, whatever you wanna call them, plays out.
Um, it's good to see that there are people thinking about security in terms of it, and there are, and in this case even better, and open source tool to help secure it. So, you know, good work there. Promise, when you officially launch from stealth, you'll come back and we'll talk more about it.
Okay? I promise. Thank you so much for, for this talk.
Uh, it was great. Fantastic. LADA has CTO co-founder capsule Security here.
Go check it out on GitHub claw guard, C-L-A-W-G-U-A-R-D. If you're messing around with open claw and the mal bots and everything, and you're worried about security, there's a great, great way to get involved there. We're gonna take a break here on Text Trunk tv.
We'll be back.