Armory
Source
Browse
Sub-Agents

policy-enforcer

Cedar policy author and reviewer for Claude Code tool calls. Writes, audits, and explains Cedar policies that govern Bash, Edit, Write, WebFetch, and other tools. Use when you need declarative, formally verifiable rules for what an AI agent can and cannot do in a project.

Score
Unranked
Evidence
No signals yet
Last commit
Not known
Listed

Install

armory install policy-enforcer --cli claude

writes the file to.claude/agents/policy-enforcer.mdListed as compatible

Configuration
# fetches the source and writes it to:
.claude/agents/policy-enforcer.md

Needs the armory CLI · not on npm yet, build it from cli/ in the repository

What it is

wshobson/agents sub-agent policy-enforcer (model: opus) from the protect-mcp plugin. Cedar policy author and reviewer for Claude Code tool calls. Writes, audits, and explains Cedar policies that govern Bash, Edit, Write, WebFetch, and other tools. Use when you need declarative, formally verifiable rules for what an AI agent can and cannot do in a project.

When to use it

Cedar policy author and reviewer for Claude Code tool calls. Writes, audits, and explains Cedar policies that govern Bash, Edit, Write, WebFetch, and other tools. Use when you need declarative, formally verifiable rules for what an AI agent can and cannot do in a project.

How to install / invoke

# copy the agent definition into your project's .claude/agents/
curl -sL https://github.com/wshobson/agents/raw/main/plugins/protect-mcp/agents/policy-enforcer.md -o .claude/agents/policy-enforcer.md

Notes

Extracted from wshobson/agents. Plugin: protect-mcp.