No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by safe-agentic-world · MCP Server · ★ 18
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is nomos safe to install? View the security audit →
Deny-wins policy hook for Claude Code and Codex. Checks every shell, file, and fetch call against rules you keep in Git, holds under --dangerously-skip-permissions, refuses commands it cannot parse, and keeps a hash-linked audit log.
| Stars | 18 |
| Forks | 1 |
| Language | Go |
| Category | MCP Server |
| License | Apache-2.0 |
| Quality Score | 65.6543475372258/100 |
| Open Issues | 6 |
| Last Updated | 2026-09-27 |
| Created | 2026-02-25 |
| Platforms | claude-code, cli, codex, go, mcp |
| Est. Tokens | ~19k |
These tools work well together with nomos for enhanced workflows:
Looking for a nomos alternative? If you're comparing nomos with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.
Open-source firewall for AI agents. Policy engine that audits and controls what OpenClaw, Claude Code, Cursor,
Policy guardrails for coding agents (Claude Code, Codex, Cursor) — every tool call is checked locally, before
Stop your AI agent from shipping insecure IaC. ops0 CLI sits between Claude Code, Codex or Gemini and your clo
Governance-as-Code for AI agents. Declarative constraints with deterministic enforcement. Provisioning Identit
Governance gateway for AI agents — bounded, auditable, session-aware control with MCP proxy, shell proxy & HTT
The antivirus for OpenClaw — approve dangerous actions, scan skills, block secret leaks, and keep humans in co
Explore other popular mcp server tools:
nomos is Deny-wins policy hook for Claude Code and Codex. Checks every shell, file, and fetch call against rules you keep in Git, holds under --dangerously-skip-permissions, refuses commands it cannot parse, a. It is categorized as a MCP Server with 18 GitHub stars.
nomos is primarily written in Go. It covers topics such as agent-guardrails, agent-security, ai-agents.
You can find installation instructions and usage details in the nomos GitHub repository at github.com/safe-agentic-world/nomos. The project has 18 stars and 1 forks, indicating an active community.
nomos is released under the Apache-2.0 license, making it free to use and modify according to the license terms.
The top alternatives to nomos on Agent Skills Hub include rampart, agentjail, ops0-cli. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: