Documentation

New to Strathon? Start with the Getting Started guide: it takes you from zero to a running firewall blocking a real agent action.

DocCovers
Getting startedInstall, connect an agent, write your first policy, see it block a call
Core conceptsThe mental model: spans, traces, policies, the seven actions, inline enforcement, audit log
Scope & limitationsWhat the three enforcement layers do and don't do, and what's roadmap vs shipped
Runtime interventionCEL policies, the seven actions (block/steer/throttle/log/alert/require_approval/allow), allow-list mode, time-based rules, policy versioning, halts, budgets, webhooks
AnalyticsTrace list, trace tree, span aggregation, behavioral drift detection (Vigil)
SpansSpan search, attribute filtering, partitioned storage
Audit logTamper-evident audit log, hash chain, SCIM filters, Merkle anchors
API keysCapability-scoped API keys, rotation, scopes reference
ProjectsMulti-project management, CRUD, auto-key minting
BudgetsCost and iteration budgets, auto-halt, circuit breakers
PII redactionPII redaction at ingest
RetentionTrace retention, per-project configuration
SamplingHead-based sampling, force-keep rules
MetricsPrometheus metrics, health endpoints
Self-hostingDocker, env vars, Postgres setup
ScalingHorizontal scaling, PgBouncer, read replicas
RBACRole-based access control, 4 roles, auth methods
CEL referenceCEL policy language reference, 20+ examples
Compliance mappingNIST AI RMF and EU AI Act evidence mapping
MCP gatewayMCP security gateway, tool-call policy enforcement
Egress proxyEgress proxy, outbound request policy enforcement
Locking egressMake the proxy mandatory via network isolation
TroubleshootingCommon issues and FAQ
frameworks/Per-framework integration guides (10 frameworks)