Prismor /

Local

/ Overview
loading

MCP Servers

every MCP server declared on this machine: where it is configured, whether its calls pass through Prismor, what it has been doing in the last 7 days, and how each tool is handled
Loading MCP servers…

Extensions

Skills, plugins, MCP servers and third-party hooks: anything installed on this machine that can put instructions or code into an agent. Prismor records each one when it first appears and again when its files change, so you can read it once and know it has not moved since.
Loading extensions…
What changed, when ?
No extension events yet.

Docs

The Prismor docs shipped with this install — browse or search without leaving the dashboard.
Pages
Loading docs…
Pick a page to read it here.
Needs attention

Checking…

    Prismor screens every tool call your agents make on this machine and decides it against the policy in force before it runs. Words used here: a call is one tool use; the decision is allowed, warned or blocked; a rule fired is one policy rule that matched, block or not.

    –
    allowed
    Allowed-
    Blocked-
    Rules fired ?-
    Agent activity · last 7 days
    Calls screened ?
    -
    Blocked ?
    -
    Sessions ?
    -
    – agents registered on this machine
    Rules fired ?
    -
    - critical · - high · - medium · - low
    How Prismor decides one tool call show
    01
    Request
    The agent asks. Nothing has run yet.
    –
    02
    Identity
    Which agent, which session, which workspace.
    –
    03
    Policy
    The rules in force are evaluated locally, as code.
    –
    04
    Decision
    Allowed, warned, or blocked, before anything runs.
    –
    05
    Evidence
    Recorded to the local ledger, synced when enrolled.
    –
    Recent Sessions
    Clean runs appear here too, even when there are no findings.
    SessionAgentStatusLast Active
    Threats by Category
    Block Rate — 30 days
    Blocked Commands by Agent
    Tool Call Breakdown
    Top MCP Servers & Skills

    Supply Chain

    last 7 days
    Allowed
    -
    Warned
    -
    Blocked
    -
    Total Checked
    -
    Ecosystems
    Recent Blocks & Warnings
    PackageEcoScore AdvisorySuggestedWhen
    Install Activity by Session
    SessionEcoInstall Command AllowedWarned BlockedWhen

    Findings & Events

    Top Sessions by Blocks
    Top Threat Patterns
    PatternCategoryCountLast SeenSeverity
    Findings Drilldown
    FindingAgentCategorySeverityWhen
    Event Feed

    Agent Control

    per-agent kill switch, enforcement mode & IAM profile — live agents pick changes up within 30 s
    AgentStatusMode CallsBlockedLast Seen Enabled
    Loading agents…

    Live Sessions

    pause Prismor, clear scope, or unblock a stuck agent — per-agent kill switch lives in the Agents tab
    Loading sessions…

    All Sessions

    full session log — click session row above for controls
    Session↕ Agent↕ Workspace↕ Risk Score↕ Findings↕ Last Active↕
    Extensions/ Extension
    Agents that used it
    Calls and the context passed ?
    Sessions
    Sessions/ Agent
    ?
    agent
    —
    Controls
    Sessions for this agent
    SessionWorkspaceRisk FindingsLast Active
    Loading…
    Sessions/ agent/ Flow
    Session
    —
    Session — click any row for details
    allowed warn blocked
    Loading session flow…
    Select a node in the flow to inspect the tool call, its verdict, and the policy that decided it.

    Policy Control

    human-only — changes take effect within 30 s on running agents
    Which policy governs Loading… Show the four layers
    YAML files
    blocks stops the call reports records it, the call proceeds Pinned safety floor, cannot be turned off A toggle decides whether a rule runs at all. Whether it blocks or reports comes from the policy's enforce selection. Saved to the project policy file; agents pick it up within 30 s.
    —
    Loading…
    Loading…
    Screening
    Enforcement mode
    Unlisted destinations
    Loading…
    Enforcement mode
    observe = log only  ·  enforce = block
    Loading…
    Enforcement mode
    observe = log only  ·  enforce = block
    Read-only — managed by your org admin in the Prismor web dashboard.
    Read-only — edit Global or Project to change this.

    Fleet

    org-wide visibility across every enrolled device

    Fleet view is a Prismor Enterprise feature

    This local dashboard shows agents and sessions on this machine. Fleet view gives your security team the same picture across every developer laptop and CI runner in the org — live sessions, findings, per-device policy status, and a remote kill switch — streamed as redacted telemetry to a dashboard you host.

    Rolling Prismor out to a team? This local dashboard stays free and open source. Enterprise adds fleet visibility, signed remote policy, org kill switch, and audit history.
    Talk to us →
    Prismor
    Loading dashboard…
    Session Drilldown
    Loading…