
OpenAPPA Agent Security: Deterministic Guardrails for Agentic Applications
OpenAPPA agent security means enforcing information-flow policy outside the model’s prompt: the engine labels everything an agent reads as audience x trust, checks every tool call against a declarative TOML contract before it runs, and returns a machine-readable remedy plan when a flow is disallowed. Its vendor benchmarks record zero successful attacks across 1,320 guarded evaluations. What is OpenAPPA, and what is it not? OpenAPPA is an MIT-licensed, Rust-based security engine published by Archestra AI in August 2026 and powered by APPA (Agentic Permissions Policy Algebra). It sits between an agent and its tools to answer one question before every action: is this data allowed to go to this destination? Reading a private record narrows the session’s audience; reading an outsider’s web page lowers its trust; a later call aiming at a destination the session no longer permits is refused before dispatch, not after. ...








