Certified compatibility
Framework support is published as a tested floor-to-ceiling range, so certifying latest does not silently drop the previously supported customer version.
CrewAI
Global runtime hooks for prompt ingress, tool calls, delegation, and output review.
LangGraph
Graph-node wrappers for stateful workflows, tools, and final-output sanitization.
Claude Agent SDK
Native lifecycle hooks plus a runnable metadata-exfiltration attack demo for prompts, tools, MCP calls, sub-agent attribution, streaming, and output review.
Hugging Face smolagents
Native Tool wrappers plus a runnable generated-code exfiltration demo, managed-agent delegation, and CodeAgent output control.
OpenAI Agents
Runner, function-tool, and handoff protection around local execution boundaries.
Microsoft
Agent Framework and AI Foundry wrappers for enterprise run, workflow, and tool boundaries.
Microsoft AutoGen
Native current AgentChat team and Core intervention hooks, legacy ConversableAgent compatibility, rolling Family 2 behavior monitoring, session freeze, and revocation. AutoGen installed bases remain protected while Microsoft recommends Agent Framework for new projects.
MCP
Host and gateway checks before third-party tool calls are forwarded.
Agno / PydanticAI
Agent, team, typed-tool, and local function wrappers for action-heavy Python apps.
Google ADK
Model and tool callback protection where ADK exposes execution lifecycle hooks.
LlamaIndex / Bedrock
FunctionTool, query, retrieval, Converse, InvokeModel, and action handler protection.