Developers
Everything PRAE publishes, in one place.
PRAE installs beside the agent. There is no hosted API and no API key: the gate is an npm package, the Command Center runs on your machine, and the only network calls are the ones your agents already make.
Install
npm install -g prae-cli # the prae command
npm install prae-gate # the gate, loaded by the agent harness as a plugin
prae check ./org.prae.json # validate a policy pack
prae explain ./org.prae.json write path=/etc/hosts
prae console ./ledger.jsonl --out ./console --serve # the console, and its record API on localhost The CLI
prae check— a policy pack against the schema;prae testruns it against security invariants.prae explain— why a call is allowed, held or refused, rule by rule.prae verify— a decision ledger's hash chain and signatures, offline;prae reportrenders it.prae console— the console as static pages from a ledger, and with--serveits record API on localhost.prae mcp— an MCP server over stdio: gated filesystem access for any MCP client, every call judged and sealed.
The API
prae console --serve exposes a JSON API on
localhost: the record, the ledger and its verification. The Command Center server adds
same-origin mutations — signed with the operator key — for answering a held call and
steering a fleet; it ships with the Command Center today, not in prae-cli. Both are
described in /openapi.json,
with an operationId, a description and typed
schemas on every operation, and JSON error bodies throughout.
Policy packs
A pack is a JSON document: rules over tools, paths, commands, data and approvals, each with an effect (allow, require approval, refuse) and a reason the operator reads. Packs can expire, can be signed, and layer: a built-in baseline, your organisation's rules, and a fleet steer an operator applies at runtime. The packs view shows a real one; the playground judges calls against one in your browser.
Resources
- prae-gate on npm — The gate: a plugin that judges every tool call against a policy pack and seals the decision.
- prae-cli on npm — The prae command: validate, explain, verify, serve.
- /openapi.json — OpenAPI 3.1 for the self-hosted Command Center API (localhost).
- /llms.txt — The site for agents: what PRAE is, when to use it, how to call it.
- Trust center — Latest validation run, coverage matrix, limitations, provenance and SBOM references.
- Security policy — Where to report a vulnerability.