A

aw1-breaker

Sub-millisecond out-of-band AST execution guard for autonomous MCP AI agents

When autonomous agent systems (MCP servers, CrewAI, LangChain) execute external tools, typical in-band prompt guardrails introduce heavy latency (>800ms) and can be bypassed by Base64-obfuscated or polyglot prompts. **aw1-breaker** operates out-of-band as a deterministic, sub-millisecond execution circuit breaker and strict AST containment runtime for Python MCP servers. - **Sub-0.02ms Latency:** Fast-path AST inspection isolates tool calls in **0.014ms** with zero perceptible overhead. - **Zero External Dependencies:** Built with pure Python standard library (`ast`, `token`, `hmac`). - **Dynamic Interception:** Blocks unauthorized shell execution, `eval()`/`exec()` injection, dynamic imports, and socket egress before reaching the OS or database. - **Assurance Tokens:** Validated payloads receive signed execution tokens (`AW1-EXEC-TOKEN-...`) for tamper-evident logging.

mvikmanners/aw1-circuit-breaker · v0.1.1 · source 80ea047 · Tools & Integrations

MvikMannersOwner verifiedcaution

Trust Score

59

Security

59

Surfaces

0

v0.1.1 Live launch

Sub-millisecond out-of-band AST execution guard for autonomous MCP AI agents

Launched
Sep 30, 2026
Pricing
open source
Availability
available

What is aw1-breaker?

aw1-breaker is a published tools & integrations plugin for AI coding agents in the codex ecosystem, developed by MvikManners and distributed through the HOL AI plugin registry. Deterministic out-of-band execution circuit breaker and AST safety proxy for autonomous AI agent tool calls

Canonical slug
mvikmanners/aw1-circuit-breaker
Version
v0.1.1 · source 80ea047 · updated Oct 9, 2026

Trust & Reputation

HOL Trust Score
59

Factor Analysis

Per-metric points (0–100 each) combined via a weighted average into the overall score.

Installability
64pts
Maintenance
30pts
MCP Posture
100pts
Plugin Security
59pts
Provenance
70pts
Publisher Quality
75pts

Registry Snapshot

Publisher verification
No
Marketplace source
Unknown
Scanner
Broker fallback
Safety label
caution
Digest verified
Yes

Trust & reputation

Trust & Reputation

HOL Trust Score
59

Factor Analysis

Per-metric points (0–100 each) combined via a weighted average into the overall score.

Installability
64pts
Maintenance
30pts
MCP Posture
100pts
Plugin Security
59pts
Provenance
70pts
Publisher Quality
75pts

Provenance

Plugin root
.
Source repo
https://github.com/MvikManners/aw1-circuit-breaker
Source commit
80ea047b38f8…
Publisher verified
No
Owner verified
@MvikManners

Continuous scanner CI not detected

This plugin remains listed. Its overall trust score is reduced by 10% because security checks are not maintained in the source repository's CI.

Optional: maintain the scanner in the source repository's CI to receive the full trust score. Listing does not require that change.

Verified badge not detected

Add the HOL verified badge to the repository README to score +2% trust. Plugin owners can open that pull request from Guard Plugins.

Security Posture

caution
Safety label
59
Security score
0
High findings
Provider
registry-broker-fallback
Grade
F · caution
Version
Unknown
cisco-skill-scanner: not_applicable

Findings

mediumpublishabilitypublishability.link.missing.websiteURL

websiteURL should be present for marketplace readiness.

mediumpublishabilitypublishability.link.missing.privacyPolicyURL

privacyPolicyURL should be present for marketplace readiness.

mediumpublishabilitypublishability.link.missing.termsOfServiceURL

termsOfServiceURL should be present for marketplace readiness.

lowoperational-securitysupply-chain.lockfile-missing

Repository snapshot does not include a lockfile.

aw1-breaker — Frequently asked questions

What is aw1-breaker?
aw1-breaker is an AI plugin in the HOL registry. When autonomous agent systems (MCP servers, CrewAI, LangChain) execute external tools, typical in-band prompt guardrails introduce heavy latency (>800ms) and can be bypassed by Base64-obfuscated or polyglot prompts. **aw1-breaker** operates out-of-band as a…
How do I install aw1-breaker?
Install aw1-breaker in your harness: Source — https://github.com/MvikManners/aw1-circuit-breaker/releases. Full step-by-step guidance is on the HOL plugin page.
How do I install aw1-breaker in Source?
To install aw1-breaker in Source, start with https://github.com/MvikManners/aw1-circuit-breaker/releases. The complete step-by-step install guide for Source is on the HOL plugin page.
Is aw1-breaker free?
aw1-breaker is listed as open source on HOL.
Who publishes aw1-breaker?
aw1-breaker is published by MvikManners and listed on HOL.
Is aw1-breaker available now?
aw1-breaker is currently available according to its latest public launch.

Install Guidance

Install in Source

Install from a native release archive or the assessed source revision.

Install guide
  1. 1

    Download the release archive

    Use a published GitHub release archive. The catalog version is the package version at the assessed commit.

    shell
  2. 2

    Follow the publisher install guide

    https://github.com/MvikManners/aw1-circuit-breaker/blob/80ea047b38f877e96f6cc98db1ad1d52c51c9ca3/docs/INSTALL.md

1 / 1

aw1-breaker demo video

Loading reviews

Plugin Manifest

{
  "name": "aw1-circuit-breaker",
  "version": "0.1.1",
  "description": "Deterministic out-of-band execution circuit breaker and AST safety proxy for autonomous AI agent tool calls",
  "repository": "https://github.com/MvikManners/aw1-circuit-breaker",
  "homepage": "https://github.com/MvikManners/aw1-circuit-breaker",
  "interface": {
    "displayName": "aw1-breaker",
    "developerName": "MvikManners",
    "category": "Tools & Integrations"
  },
  "holPackageManager": "python",
  "holManifestOrigin": "synthesized",
  "registryIndexVersion": 5
}

File Inventory

.codex-plugin/plugin.json

plugin-manifest

496 bytes

c663afbdd0f54809…

pyproject.toml

file

657 bytes

acd21c3cda8a59e8…

README.md

file

3,685 bytes

aa3378d673735492…

README.md

file

3,685 bytes

aa3378d673735492…

History, reviews, and alternatives

Latest launch

User reviews

—from 0 reviews

The first substantive review can be added on this page.

Read or write reviews

Milestones and alternatives

Makers can publish releases and security milestones after claiming the plugin.