{"_id":"@agentproto/egress","_rev":"12-06fd89f672240a6ba8462cbba8a726fa","name":"@agentproto/egress","dist-tags":{"latest":"0.1.11"},"versions":{"0.1.0-alpha.0":{"name":"@agentproto/egress","version":"0.1.0-alpha.0","keywords":["agentproto","egress","proxy","secrets","agent-sandbox","open-standard"],"license":"MIT","_id":"@agentproto/egress@0.1.0-alpha.0","maintainers":[{"name":"agentiknet","email":"jeremy@agentik.net"}],"homepage":"https://agentproto.sh","bugs":{"url":"https://github.com/agentproto/ts/issues"},"dist":{"shasum":"f7059c59d835249dcb168f311a87ac8fc5d60930","tarball":"https://registry.npmjs.org/@agentproto/egress/-/egress-0.1.0-alpha.0.tgz","fileCount":6,"integrity":"sha512-Vn2EEWwDCfGTbBRpT7TVYMSyGRn8MwJ+IvtMkbjm7lEF/MmBcc/wM6qWpRsuHa7rvPhq2nanpKAy3JjGCcSShg==","signatures":[{"sig":"MEQCIE3KEu+sj6E2xHTyl/y8McSusM0B7ItL2t7Bwv/HLxrYAiBDzanaHBsMnLMOhMhmUfdSZVy0ejVOU8X/aQG12zcT8A==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"attestations":{"url":"https://registry.npmjs.org/-/npm/v1/attestations/@agentproto%2fegress@0.1.0-alpha.0","provenance":{"predicateType":"https://slsa.dev/provenance/v1"}},"unpackedSize":38301},"main":"dist/index.mjs","type":"module","_from":"file:agentproto-egress-0.1.0-alpha.0.tgz","types":"dist/index.d.ts","module":"dist/index.mjs","exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.mjs","default":"./dist/index.mjs"},"./package.json":"./package.json"},"scripts":{"dev":"tsup --watch","test":"vitest run --passWithNoTests","build":"tsup","clean":"rm -rf dist","test:watch":"vitest","check-types":"tsc --noEmit"},"_npmUser":{"name":"agentiknet","email":"jeremy@agentik.net"},"_resolved":"/tmp/1b5a053902b769455024025f5607a213/agentproto-egress-0.1.0-alpha.0.tgz","_integrity":"sha512-Vn2EEWwDCfGTbBRpT7TVYMSyGRn8MwJ+IvtMkbjm7lEF/MmBcc/wM6qWpRsuHa7rvPhq2nanpKAy3JjGCcSShg==","repository":{"url":"git+https://github.com/agentproto/ts.git","type":"git","directory":"packages/egress"},"_npmVersion":"10.9.8","description":"@agentproto/egress — outbound traffic control for agent sandboxes. Mode registry (off / cooperative / strict / paranoid), provider allowlist, transport-agnostic proxy core, audit hooks. Cooperative mode delegates substitution to @agentproto/secrets so the","directories":{},"_nodeVersion":"22.22.3","dependencies":{"@agentproto/secrets":"0.1.0-alpha.0"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsup":"^8.5.1","vitest":"^3.2.4","typescript":"^5.9.3","@types/node":"^25.6.2","@agentproto/tooling":"0.1.0-alpha.0"},"_npmOperationalInternal":{"tmp":"tmp/egress_0.1.0-alpha.0_1781975144348_0.704885861565073","host":"s3://npm-registry-packages-npm-production"}},"0.1.0":{"name":"@agentproto/egress","version":"0.1.0","keywords":["agentproto","egress","proxy","secrets","agent-sandbox","open-standard"],"license":"MIT","_id":"@agentproto/egress@0.1.0","maintainers":[{"name":"agentiknet","email":"jeremy@agentik.net"}],"homepage":"https://agentproto.sh","bugs":{"url":"https://github.com/agentproto/ts/issues"},"dist":{"shasum":"19d87872fff6de7e0824ce2bbf09f53a563a0799","tarball":"https://registry.npmjs.org/@agentproto/egress/-/egress-0.1.0.tgz","fileCount":6,"integrity":"sha512-ZZE8vUfwewuD7bD3WWY8PFfVZMQRuNVSRZMB0Z0/EBe2CMItJLJG+gEmBMbpXfxealHzgh8JSxO0whnuIMbVSQ==","signatures":[{"sig":"MEQCIF/6u7Lw+/I5HbbCz2LnLMhOdmwXUSwZRgj5+URL/hE6AiBDzFqR79llN4kZ8BMBCv/kUT/pobkoxbqt1zDG3zf/Lw==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"attestations":{"url":"https://registry.npmjs.org/-/npm/v1/attestations/@agentproto%2fegress@0.1.0","provenance":{"predicateType":"https://slsa.dev/provenance/v1"}},"unpackedSize":38285},"main":"dist/index.mjs","type":"module","_from":"file:agentproto-egress-0.1.0.tgz","types":"dist/index.d.ts","module":"dist/index.mjs","exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.mjs","default":"./dist/index.mjs"},"./package.json":"./package.json"},"scripts":{"dev":"tsup --watch","test":"vitest run --passWithNoTests","build":"tsup","clean":"rm -rf dist","test:watch":"vitest","check-types":"tsc --noEmit"},"_npmUser":{"name":"agentiknet","email":"jeremy@agentik.net"},"_resolved":"/tmp/207fedaaedcc125c8afdbb54db7543c2/agentproto-egress-0.1.0.tgz","_integrity":"sha512-ZZE8vUfwewuD7bD3WWY8PFfVZMQRuNVSRZMB0Z0/EBe2CMItJLJG+gEmBMbpXfxealHzgh8JSxO0whnuIMbVSQ==","repository":{"url":"git+https://github.com/agentproto/ts.git","type":"git","directory":"packages/egress"},"_npmVersion":"10.9.8","description":"@agentproto/egress — outbound traffic control for agent sandboxes. Mode registry (off / cooperative / strict / paranoid), provider allowlist, transport-agnostic proxy core, audit hooks. Cooperative mode delegates substitution to @agentproto/secrets so the","directories":{},"_nodeVersion":"22.23.1","dependencies":{"@agentproto/secrets":"0.1.0"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsup":"^8.5.1","vitest":"^3.2.4","typescript":"^5.9.3","@types/node":"^25.6.2","@agentproto/tooling":"0.1.0-alpha.0"},"_npmOperationalInternal":{"tmp":"tmp/egress_0.1.0_1783522277861_0.5086005311684687","host":"s3://npm-registry-packages-npm-production"}},"0.1.1":{"name":"@agentproto/egress","version":"0.1.1","keywords":["agentproto","egress","proxy","secrets","agent-sandbox","open-standard"],"license":"Apache-2.0","_id":"@agentproto/egress@0.1.1","maintainers":[{"name":"agentiknet","email":"jeremy@agentik.net"}],"homepage":"https://agentproto.sh","bugs":{"url":"https://github.com/agentproto/ts/issues"},"dist":{"shasum":"0417ff1068796815f9c2eae58fdc215bd13080ff","tarball":"https://registry.npmjs.org/@agentproto/egress/-/egress-0.1.1.tgz","fileCount":6,"integrity":"sha512-524KblzPUXzIIgs2rRXcyEgUjw5E2oZcwnvhDg0INL9NfoYuMfGDIu2W///zpCeSy5ROFFYjP/ptdKsfzGq53g==","signatures":[{"sig":"MEQCIHm38JWI5Y/NeHEiyh4TgTfYrDkh4Nykg7IykJs8gBOlAiAbRKB/X6WoavevxDQ1iJdkGUPP2d9LTqix4C4IlmVkBA==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"attestations":{"url":"https://registry.npmjs.org/-/npm/v1/attestations/@agentproto%2fegress@0.1.1","provenance":{"predicateType":"https://slsa.dev/provenance/v1"}},"unpackedSize":48570},"main":"dist/index.mjs","type":"module","_from":"file:agentproto-egress-0.1.1.tgz","types":"dist/index.d.ts","module":"dist/index.mjs","exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.mjs","default":"./dist/index.mjs"},"./package.json":"./package.json"},"scripts":{"dev":"tsup --watch","test":"vitest run --passWithNoTests","build":"tsup","clean":"rm -rf dist","test:watch":"vitest","check-types":"tsc --noEmit"},"_npmUser":{"name":"agentiknet","email":"jeremy@agentik.net"},"_resolved":"/tmp/c310ceb1c838730086f60ef516591a9b/agentproto-egress-0.1.1.tgz","_integrity":"sha512-524KblzPUXzIIgs2rRXcyEgUjw5E2oZcwnvhDg0INL9NfoYuMfGDIu2W///zpCeSy5ROFFYjP/ptdKsfzGq53g==","repository":{"url":"git+https://github.com/agentproto/ts.git","type":"git","directory":"packages/egress"},"_npmVersion":"10.9.8","description":"@agentproto/egress — outbound traffic control for agent sandboxes. Mode registry (off / cooperative / strict / paranoid), provider allowlist, transport-agnostic proxy core, audit hooks. Cooperative mode delegates substitution to @agentproto/secrets so the","directories":{},"_nodeVersion":"22.23.1","dependencies":{"@agentproto/secrets":"0.2.0"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsup":"^8.5.1","vitest":"^3.2.4","typescript":"^5.9.3","@types/node":"^25.6.2","@agentproto/tooling":"0.1.0-alpha.0"},"_npmOperationalInternal":{"tmp":"tmp/egress_0.1.1_1784165849372_0.26220105366794577","host":"s3://npm-registry-packages-npm-production"}},"0.1.2":{"name":"@agentproto/egress","version":"0.1.2","keywords":["agentproto","egress","proxy","secrets","agent-sandbox","open-standard"],"license":"Apache-2.0","_id":"@agentproto/egress@0.1.2","maintainers":[{"name":"agentiknet","email":"jeremy@agentik.net"}],"homepage":"https://agentproto.sh","bugs":{"url":"https://github.com/agentproto/ts/issues"},"dist":{"shasum":"ebe715e0d306171db9d205a0a3fa134baacf074b","tarball":"https://registry.npmjs.org/@agentproto/egress/-/egress-0.1.2.tgz","fileCount":6,"integrity":"sha512-XhPw5YV4eSijfKQESujRwyn+k3y2D5ImsqpTxZB86ByTIlpIbAyFOUNXgP992cSpPret1e5h42NVpkYGMPDGsw==","signatures":[{"sig":"MEUCIQDNdH/xXu9nASSme1xz8LpHT7JH1j/T2pBoalFiuBhlPQIgO5DuawWM7gpUUj/hj1ZzIzm8He3tmdQ6wYRZagEiQvI=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"attestations":{"url":"https://registry.npmjs.org/-/npm/v1/attestations/@agentproto%2fegress@0.1.2","provenance":{"predicateType":"https://slsa.dev/provenance/v1"}},"unpackedSize":48570},"main":"dist/index.mjs","type":"module","_from":"file:agentproto-egress-0.1.2.tgz","types":"dist/index.d.ts","module":"dist/index.mjs","exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.mjs","default":"./dist/index.mjs"},"./package.json":"./package.json"},"scripts":{"dev":"tsup --watch","test":"vitest run --passWithNoTests","build":"tsup","clean":"rm -rf dist","test:watch":"vitest","check-types":"tsc --noEmit"},"_npmUser":{"name":"agentiknet","email":"jeremy@agentik.net"},"_resolved":"/tmp/0e5571580922125e3bac19bee327613e/agentproto-egress-0.1.2.tgz","_integrity":"sha512-XhPw5YV4eSijfKQESujRwyn+k3y2D5ImsqpTxZB86ByTIlpIbAyFOUNXgP992cSpPret1e5h42NVpkYGMPDGsw==","repository":{"url":"git+https://github.com/agentproto/ts.git","type":"git","directory":"packages/egress"},"_npmVersion":"10.9.8","description":"@agentproto/egress — outbound traffic control for agent sandboxes. Mode registry (off / cooperative / strict / paranoid), provider allowlist, transport-agnostic proxy core, audit hooks. Cooperative mode delegates substitution to @agentproto/secrets so the","directories":{},"_nodeVersion":"22.23.1","dependencies":{"@agentproto/secrets":"0.2.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsup":"^8.5.1","vitest":"^3.2.4","typescript":"^5.9.3","@types/node":"^25.6.2","@agentproto/tooling":"0.1.0-alpha.0"},"_npmOperationalInternal":{"tmp":"tmp/egress_0.1.2_1784494681438_0.5253428761453467","host":"s3://npm-registry-packages-npm-production"}},"0.1.3":{"name":"@agentproto/egress","version":"0.1.3","keywords":["agentproto","egress","proxy","secrets","agent-sandbox","open-standard"],"license":"Apache-2.0","_id":"@agentproto/egress@0.1.3","maintainers":[{"name":"agentiknet","email":"jeremy@agentik.net"}],"homepage":"https://agentproto.sh","bugs":{"url":"https://github.com/agentproto/ts/issues"},"dist":{"shasum":"aee8f58b073036f97d51c9fd3088ec3b10497b0f","tarball":"https://registry.npmjs.org/@agentproto/egress/-/egress-0.1.3.tgz","fileCount":6,"integrity":"sha512-ex4kyf+1KiXFZ4gL99B2q2/FVwN8RpOyXD9Ay84i5Ca/9wf5WbngUkEAM807lGYm0U67GB3p8S2Wz61A29KR2w==","signatures":[{"sig":"MEQCIF3v3egihPKMgPzDnZxMHacE+VHGSGp+UvjaxPVaWowGAiB1JbGIjN7qGt5PVQzUpiLSKlcbkZEnvRiCFV8p66q32Q==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"attestations":{"url":"https://registry.npmjs.org/-/npm/v1/attestations/@agentproto%2fegress@0.1.3","provenance":{"predicateType":"https://slsa.dev/provenance/v1"}},"unpackedSize":48570},"main":"dist/index.mjs","type":"module","_from":"file:agentproto-egress-0.1.3.tgz","types":"dist/index.d.ts","module":"dist/index.mjs","exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.mjs","default":"./dist/index.mjs"},"./package.json":"./package.json"},"scripts":{"dev":"tsup --watch","test":"vitest run --passWithNoTests","build":"tsup","clean":"rm -rf dist","test:watch":"vitest","check-types":"tsc --noEmit"},"_npmUser":{"name":"agentiknet","email":"jeremy@agentik.net"},"_resolved":"/tmp/839dc22fcc5ddea0d8b699f581b467b1/agentproto-egress-0.1.3.tgz","_integrity":"sha512-ex4kyf+1KiXFZ4gL99B2q2/FVwN8RpOyXD9Ay84i5Ca/9wf5WbngUkEAM807lGYm0U67GB3p8S2Wz61A29KR2w==","repository":{"url":"git+https://github.com/agentproto/ts.git","type":"git","directory":"packages/egress"},"_npmVersion":"10.9.8","description":"@agentproto/egress — outbound traffic control for agent sandboxes. Mode registry (off / cooperative / strict / paranoid), provider allowlist, transport-agnostic proxy core, audit hooks. Cooperative mode delegates substitution to @agentproto/secrets so the","directories":{},"_nodeVersion":"22.23.1","dependencies":{"@agentproto/secrets":"0.2.2"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsup":"^8.5.1","vitest":"^3.2.4","typescript":"^5.9.3","@types/node":"^25.6.2","@agentproto/tooling":"0.1.0-alpha.0"},"_npmOperationalInternal":{"tmp":"tmp/egress_0.1.3_1785153668149_0.3812840512136553","host":"s3://npm-registry-packages-npm-production"}},"0.1.5":{"name":"@agentproto/egress","version":"0.1.5","keywords":["agentproto","egress","proxy","secrets","agent-sandbox","open-standard"],"license":"Apache-2.0","_id":"@agentproto/egress@0.1.5","maintainers":[{"name":"agentiknet","email":"jeremy@agentik.net"}],"homepage":"https://agentproto.sh","bugs":{"url":"https://github.com/agentproto/ts/issues"},"dist":{"shasum":"a174ec51f72fc870c71d5a7e0bf7168ced2bbbbd","tarball":"https://registry.npmjs.org/@agentproto/egress/-/egress-0.1.5.tgz","fileCount":6,"integrity":"sha512-hPeT7eziLHA8gvYZTwI4O2yP6gwxITyLtooN9cIbR5vLf4Cogj7RjzH2jgw/fh/uxLIodo1HHebFHCjV8iRK8Q==","signatures":[{"sig":"MEQCIHW/CWebpGIgv4sIpnPPjPGVNk1p5RVkgVqNTWbAPincAiBtv8h3nLteRJpWxZd7ihls6HymFQ8nc0fhOKY2C5jkhQ==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"attestations":{"url":"https://registry.npmjs.org/-/npm/v1/attestations/@agentproto%2fegress@0.1.5","provenance":{"predicateType":"https://slsa.dev/provenance/v1"}},"unpackedSize":48570},"main":"dist/index.mjs","type":"module","_from":"file:agentproto-egress-0.1.5.tgz","types":"dist/index.d.ts","module":"dist/index.mjs","exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.mjs","default":"./dist/index.mjs"},"./package.json":"./package.json"},"scripts":{"dev":"tsup --watch","test":"vitest run --passWithNoTests","build":"tsup","clean":"rm -rf dist","test:watch":"vitest","check-types":"tsc --noEmit"},"_npmUser":{"name":"agentiknet","email":"jeremy@agentik.net"},"_resolved":"/tmp/3e8435ce11b8880a624cea3a57d3a75c/agentproto-egress-0.1.5.tgz","_integrity":"sha512-hPeT7eziLHA8gvYZTwI4O2yP6gwxITyLtooN9cIbR5vLf4Cogj7RjzH2jgw/fh/uxLIodo1HHebFHCjV8iRK8Q==","repository":{"url":"git+https://github.com/agentproto/ts.git","type":"git","directory":"packages/egress"},"_npmVersion":"10.9.8","description":"@agentproto/egress — outbound traffic control for agent sandboxes. Mode registry (off / cooperative / strict / paranoid), provider allowlist, transport-agnostic proxy core, audit hooks. Cooperative mode delegates substitution to @agentproto/secrets so the","directories":{},"_nodeVersion":"22.23.2","dependencies":{"@agentproto/secrets":"0.2.4"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsup":"^8.5.1","vitest":"^3.2.4","typescript":"^5.9.3","@types/node":"^25.6.2","@agentproto/tooling":"0.1.0-alpha.0"},"_npmOperationalInternal":{"tmp":"tmp/egress_0.1.5_1788280183102_0.35351046433691957","host":"s3://npm-registry-packages-npm-production"}},"0.1.6":{"name":"@agentproto/egress","version":"0.1.6","keywords":["agentproto","egress","proxy","secrets","agent-sandbox","open-standard"],"license":"Apache-2.0","_id":"@agentproto/egress@0.1.6","maintainers":[{"name":"agentiknet","email":"jeremy@agentik.net"}],"homepage":"https://agentproto.sh","bugs":{"url":"https://github.com/agentproto/ts/issues"},"dist":{"shasum":"4bb9bfe96aa252ac213881474a0df8f3c994f1d2","tarball":"https://registry.npmjs.org/@agentproto/egress/-/egress-0.1.6.tgz","fileCount":6,"integrity":"sha512-sq569G53oZsRTniKB4KPwL2LRi+nSPTwzeUJuQVvLO9h7KmN2EGC6QIuOilYNCimXLhQ6/F/7PAEEBJI9nf6mQ==","signatures":[{"sig":"MEUCIQDrFczmaFawjWbxD8uBx72DAC5ZXSIwDZCm/aGDgEpIOgIgGFFtUXR+unwqN8sr3sYL9ivM+TFRDbGuepw2dQ0ajOs=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"},{"sig":"MEUCIQD9RidWOPuov0m+qUBzQuY1Hu1fRtY2rS/+rCi/JBrllgIgICk8A++g/USj5fye4bSV597g44laNzPSYd9hMTdeSFo=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"attestations":{"url":"https://registry.npmjs.org/-/npm/v1/attestations/@agentproto%2fegress@0.1.6","provenance":{"predicateType":"https://slsa.dev/provenance/v1"}},"unpackedSize":48562},"main":"dist/index.mjs","type":"module","_from":"file:agentproto-egress-0.1.6.tgz","types":"dist/index.d.ts","module":"dist/index.mjs","exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.mjs","default":"./dist/index.mjs"},"./package.json":"./package.json"},"scripts":{"dev":"tsup --watch","test":"vitest run --passWithNoTests","build":"tsup","clean":"rm -rf dist","test:watch":"vitest","check-types":"tsc --noEmit"},"_npmUser":{"name":"agentiknet","email":"jeremy@agentik.net"},"_resolved":"/tmp/9288390f9dbbc00deffafdb586933adb/agentproto-egress-0.1.6.tgz","_integrity":"sha512-sq569G53oZsRTniKB4KPwL2LRi+nSPTwzeUJuQVvLO9h7KmN2EGC6QIuOilYNCimXLhQ6/F/7PAEEBJI9nf6mQ==","repository":{"url":"git+https://github.com/agentproto/ts.git","type":"git","directory":"packages/egress"},"_npmVersion":"10.9.8","description":"@agentproto/egress — outbound traffic control for agent sandboxes. Mode registry (off / cooperative / strict / paranoid), provider allowlist, transport-agnostic proxy core, audit hooks. Cooperative mode delegates substitution to @agentproto/secrets so the","directories":{},"_nodeVersion":"22.23.2","dependencies":{"@agentproto/secrets":"0.2.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsup":"^8.5.1","vitest":"^3.2.7","typescript":"^5.9.3","@types/node":"^25.9.5","@agentproto/tooling":"0.1.0"},"_npmOperationalInternal":{"tmp":"tmp/egress_0.1.6_1788960800087_0.03090157760046064","host":"s3://npm-registry-packages-npm-production"}},"0.1.7":{"name":"@agentproto/egress","version":"0.1.7","keywords":["agentproto","egress","proxy","secrets","agent-sandbox","open-standard"],"license":"Apache-2.0","_id":"@agentproto/egress@0.1.7","maintainers":[{"name":"agentiknet","email":"jeremy@agentik.net"}],"homepage":"https://agentproto.sh","bugs":{"url":"https://github.com/agentproto/ts/issues"},"dist":{"shasum":"cec46a00e04205fed90cf99d41a894559c92a4ab","tarball":"https://registry.npmjs.org/@agentproto/egress/-/egress-0.1.7.tgz","fileCount":6,"integrity":"sha512-7Vl+Vcaa9s5eaDAWV4AsG3/uCUyX4gjh7+/fKAkF/t+GizZwbk+Eyp6K4bUndJSntJaPcaACqadyS5/TbwahZw==","signatures":[{"sig":"MEQCIHG9iN/1QpiTLyyJOx0GeuUUvPY3WZ5DH8211YnUFn0sAiBkKsnGP3J1Ow3ozPvGajeybxX6PMo0S35b4oEtS6wdaA==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"},{"sig":"MEYCIQC0QRptkV6kykTkqa3OBpPQpaI5NoQwas9Q7EQ4WWiBAQIhANh9wm73BJ4MfRj2ZyDGRQP2VN3vaC7HDpKVO1EZA5B4","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"attestations":{"url":"https://registry.npmjs.org/-/npm/v1/attestations/@agentproto%2fegress@0.1.7","provenance":{"predicateType":"https://slsa.dev/provenance/v1"}},"unpackedSize":48562},"main":"dist/index.mjs","type":"module","_from":"file:agentproto-egress-0.1.7.tgz","types":"dist/index.d.ts","module":"dist/index.mjs","exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.mjs","default":"./dist/index.mjs"},"./package.json":"./package.json"},"scripts":{"dev":"tsup --watch","test":"vitest run --passWithNoTests","build":"tsup","clean":"rm -rf dist","test:watch":"vitest","check-types":"tsc --noEmit"},"_npmUser":{"name":"agentiknet","email":"jeremy@agentik.net"},"_resolved":"/tmp/7eaa6348a31d690d084f773f8afefa29/agentproto-egress-0.1.7.tgz","_integrity":"sha512-7Vl+Vcaa9s5eaDAWV4AsG3/uCUyX4gjh7+/fKAkF/t+GizZwbk+Eyp6K4bUndJSntJaPcaACqadyS5/TbwahZw==","repository":{"url":"git+https://github.com/agentproto/ts.git","type":"git","directory":"packages/egress"},"_npmVersion":"10.9.8","description":"@agentproto/egress — outbound traffic control for agent sandboxes. Mode registry (off / cooperative / strict / paranoid), provider allowlist, transport-agnostic proxy core, audit hooks. Cooperative mode delegates substitution to @agentproto/secrets so the","directories":{},"_nodeVersion":"22.23.2","dependencies":{"@agentproto/secrets":"0.2.6"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsup":"^8.5.1","vitest":"^3.2.7","typescript":"^5.9.3","@types/node":"^25.9.5","@agentproto/tooling":"0.1.0"},"_npmOperationalInternal":{"tmp":"tmp/egress_0.1.7_1789642946495_0.4811837038266118","host":"s3://npm-registry-packages-npm-production"}},"0.1.8":{"name":"@agentproto/egress","version":"0.1.8","keywords":["agentproto","egress","proxy","secrets","agent-sandbox","open-standard"],"license":"Apache-2.0","_id":"@agentproto/egress@0.1.8","maintainers":[{"name":"agentiknet","email":"jeremy@agentik.net"}],"homepage":"https://agentproto.sh","bugs":{"url":"https://github.com/agentproto/ts/issues"},"dist":{"shasum":"356efdaed0207e355c4dfe3600b80aee56af04cf","tarball":"https://registry.npmjs.org/@agentproto/egress/-/egress-0.1.8.tgz","fileCount":6,"integrity":"sha512-PWY80GA3KtJaWNsghI8wA3H3DTZPq+E927SlCaPCx50fx2+NTZmUKcePDtWtCI1B+4sCiBd20EIsrw7ntgPc9Q==","signatures":[{"sig":"MEYCIQCN8gWGYtBkHrJYFcc4HFXxhe6ZxqjMKf381L8+JXQ8VAIhAJNKXPY3OQ305G5ts93RZuFd7J+JykprlB4Lk/j/vgFt","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"},{"sig":"MEUCIQCBHtUiyVdgBjl5j6gm4LPi26hplw4ZS43HQP3FYXf3ewIgfDcpaxIlC/P7lagvX6p1j4rd6vAWnh17T36Ir/bqbMs=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"attestations":{"url":"https://registry.npmjs.org/-/npm/v1/attestations/@agentproto%2fegress@0.1.8","provenance":{"predicateType":"https://slsa.dev/provenance/v1"}},"unpackedSize":48562},"main":"dist/index.mjs","type":"module","_from":"file:agentproto-egress-0.1.8.tgz","types":"dist/index.d.ts","module":"dist/index.mjs","exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.mjs","default":"./dist/index.mjs"},"./package.json":"./package.json"},"scripts":{"dev":"tsup --watch","test":"vitest run --passWithNoTests","build":"tsup","clean":"rm -rf dist","test:watch":"vitest","check-types":"tsc --noEmit"},"_npmUser":{"name":"agentiknet","email":"jeremy@agentik.net"},"_resolved":"/tmp/532da054b125f8d094ecc48637e7f969/agentproto-egress-0.1.8.tgz","_integrity":"sha512-PWY80GA3KtJaWNsghI8wA3H3DTZPq+E927SlCaPCx50fx2+NTZmUKcePDtWtCI1B+4sCiBd20EIsrw7ntgPc9Q==","repository":{"url":"git+https://github.com/agentproto/ts.git","type":"git","directory":"packages/egress"},"_npmVersion":"10.9.8","description":"@agentproto/egress — outbound traffic control for agent sandboxes. Mode registry (off / cooperative / strict / paranoid), provider allowlist, transport-agnostic proxy core, audit hooks. Cooperative mode delegates substitution to @agentproto/secrets so the","directories":{},"_nodeVersion":"22.23.2","dependencies":{"@agentproto/secrets":"1.0.0"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsup":"^8.5.1","vitest":"^3.2.7","typescript":"^5.9.3","@types/node":"^25.9.5","@agentproto/tooling":"0.1.0"},"_npmOperationalInternal":{"tmp":"tmp/egress_0.1.8_1790477201353_0.08204443019900287","host":"s3://npm-registry-packages-npm-production"}},"0.1.9":{"name":"@agentproto/egress","version":"0.1.9","keywords":["agentproto","egress","proxy","secrets","agent-sandbox","open-standard"],"license":"Apache-2.0","_id":"@agentproto/egress@0.1.9","maintainers":[{"name":"agentiknet","email":"jeremy@agentik.net"}],"homepage":"https://agentproto.sh","bugs":{"url":"https://github.com/agentproto/ts/issues"},"dist":{"shasum":"d3dc26d040fd188a0babf6e1e425ba2da0c73929","tarball":"https://registry.npmjs.org/@agentproto/egress/-/egress-0.1.9.tgz","fileCount":6,"integrity":"sha512-nNjJiSffrNeUv4TKDyj5g1eB0sTKnW87yNaQN9R+xhQZvOQQWDIDeMZHciVB/7rznFh0Wb8pYbXYLbI3snC5Cg==","signatures":[{"sig":"MEQCIFVBNHfAepMbQZKBaiXyKcg/OdLOVpTfNKeNiXEIkDvRAiB3rrb8T1pMZckGnfoVTcxgRvP0TApbzgwmq2uDUZ5qVQ==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"},{"sig":"MEQCIGUgbEKjdMZ/RTzCqf3HaVY6KsZ4X+N0h/wiHbEtQdlyAiAElH7BxgfxUFbo7eaDYInj5ZsdJbdFbM3npcC5dVxUWA==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"attestations":{"url":"https://registry.npmjs.org/-/npm/v1/attestations/@agentproto%2fegress@0.1.9","provenance":{"predicateType":"https://slsa.dev/provenance/v1"}},"unpackedSize":48562},"main":"dist/index.mjs","type":"module","_from":"file:agentproto-egress-0.1.9.tgz","types":"dist/index.d.ts","module":"dist/index.mjs","exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.mjs","default":"./dist/index.mjs"},"./package.json":"./package.json"},"scripts":{"dev":"tsup --watch","test":"vitest run --passWithNoTests","build":"tsup","clean":"rm -rf dist","test:watch":"vitest","check-types":"tsc --noEmit"},"_npmUser":{"name":"agentiknet","email":"jeremy@agentik.net"},"_resolved":"/tmp/3fa5566da783472c3ff74a6353f366d4/agentproto-egress-0.1.9.tgz","_integrity":"sha512-nNjJiSffrNeUv4TKDyj5g1eB0sTKnW87yNaQN9R+xhQZvOQQWDIDeMZHciVB/7rznFh0Wb8pYbXYLbI3snC5Cg==","repository":{"url":"git+https://github.com/agentproto/ts.git","type":"git","directory":"packages/egress"},"_npmVersion":"10.9.8","description":"@agentproto/egress — outbound traffic control for agent sandboxes. Mode registry (off / cooperative / strict / paranoid), provider allowlist, transport-agnostic proxy core, audit hooks. Cooperative mode delegates substitution to @agentproto/secrets so the","directories":{},"_nodeVersion":"22.23.2","dependencies":{"@agentproto/secrets":"1.1.0"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsup":"^8.5.1","vitest":"^3.2.7","typescript":"^5.9.3","@types/node":"^25.9.5","@agentproto/tooling":"0.1.0"},"_npmOperationalInternal":{"tmp":"tmp/egress_0.1.9_1790550160155_0.40659062255503975","host":"s3://npm-registry-packages-npm-production"}},"0.1.10":{"name":"@agentproto/egress","version":"0.1.10","keywords":["agentproto","egress","proxy","secrets","agent-sandbox","open-standard"],"license":"Apache-2.0","_id":"@agentproto/egress@0.1.10","maintainers":[{"name":"agentiknet","email":"jeremy@agentik.net"}],"homepage":"https://agentproto.sh","bugs":{"url":"https://github.com/agentproto/ts/issues"},"dist":{"shasum":"6590c220997d0d7653f4be0ed1b7f8907ea50066","tarball":"https://registry.npmjs.org/@agentproto/egress/-/egress-0.1.10.tgz","fileCount":6,"integrity":"sha512-V3UIWO3P11jbYN9eSoSHR7+ceYlVlR4D2v+cNQPJUUP4i0XVkGU0iXeMMx8WZRv2wsijtGf6ViHgkBjQbzotSQ==","signatures":[{"sig":"MEUCIDHtF5Thcit43c+ibSA07sW6LuVdeMBRHo4vOIkQq3BEAiEAzKGwLt7GFfrpA2jPaxmx6rIQyjMuZORahHkt+kvahh4=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"},{"sig":"MEUCIAPythxq1Ufyej9gY+sbvn8u2mfDJKlc1Tb/hMEWdrm9AiEA33DPXF3HyA67H0C3IMNjlx43bos69Qy6/9NNtzUKcvw=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"attestations":{"url":"https://registry.npmjs.org/-/npm/v1/attestations/@agentproto%2fegress@0.1.10","provenance":{"predicateType":"https://slsa.dev/provenance/v1"}},"unpackedSize":48563},"main":"dist/index.mjs","type":"module","_from":"file:agentproto-egress-0.1.10.tgz","types":"dist/index.d.ts","module":"dist/index.mjs","exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.mjs","default":"./dist/index.mjs"},"./package.json":"./package.json"},"scripts":{"dev":"tsup --watch","test":"vitest run --passWithNoTests","build":"tsup","clean":"rm -rf dist","test:watch":"vitest","check-types":"tsc --noEmit"},"_npmUser":{"name":"agentiknet","email":"jeremy@agentik.net"},"_resolved":"/tmp/332322dc9f70a64927bf89de615bc425/agentproto-egress-0.1.10.tgz","_integrity":"sha512-V3UIWO3P11jbYN9eSoSHR7+ceYlVlR4D2v+cNQPJUUP4i0XVkGU0iXeMMx8WZRv2wsijtGf6ViHgkBjQbzotSQ==","repository":{"url":"git+https://github.com/agentproto/ts.git","type":"git","directory":"packages/egress"},"_npmVersion":"10.9.8","description":"@agentproto/egress — outbound traffic control for agent sandboxes. Mode registry (off / cooperative / strict / paranoid), provider allowlist, transport-agnostic proxy core, audit hooks. Cooperative mode delegates substitution to @agentproto/secrets so the","directories":{},"_nodeVersion":"22.23.2","dependencies":{"@agentproto/secrets":"1.1.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsup":"^8.5.1","vitest":"^3.2.7","typescript":"^5.9.3","@types/node":"^25.9.5","@agentproto/tooling":"0.1.0"},"_npmOperationalInternal":{"tmp":"tmp/egress_0.1.10_1790702525817_0.587881936774564","host":"s3://npm-registry-packages-npm-production"}},"0.1.11":{"_id":"@agentproto/egress@0.1.11","bugs":{"url":"https://github.com/agentproto/ts/issues"},"dist":{"shasum":"20c8a28a84f53329ca1170df47546efb6b9d8a65","tarball":"https://registry.npmjs.org/@agentproto/egress/-/egress-0.1.11.tgz","fileCount":6,"integrity":"sha512-WjDO3zodhhFHuKPgWEkgrviwhDGzjfAn9fcB4Crz9YVSg7LWCwsisxv/rL111M6Pvf4n9GM4RIZzFP6bHmB7xw==","signatures":[{"sig":"MEUCIHXj19EfM3BITwGRu2jVIHXJlvJ73Eez+K3O8gQCqLaoAiEAvDHCAlw9pobsDgxb7McXKWMUc4GsyCnq+4+oUuDwCOY=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"},{"keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U","sig":"MEUCIHUs3BFeFca6WOIH7ujoqchWlCn+YHG8ov7I/k50BTNyAiEAqG//aEfa7aeUwdnbGNXGLR0a2RjRuv0xREq6Z+uCu84="}],"attestations":{"url":"https://registry.npmjs.org/-/npm/v1/attestations/@agentproto%2fegress@0.1.11","provenance":{"predicateType":"https://slsa.dev/provenance/v1"}},"unpackedSize":48563},"main":"dist/index.mjs","name":"@agentproto/egress","type":"module","_from":"file:agentproto-egress-0.1.11.tgz","types":"dist/index.d.ts","module":"dist/index.mjs","exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.mjs","default":"./dist/index.mjs"},"./package.json":"./package.json"},"license":"Apache-2.0","scripts":{"dev":"tsup --watch","test":"vitest run --passWithNoTests","build":"tsup","clean":"rm -rf dist","test:watch":"vitest","check-types":"tsc --noEmit"},"version":"0.1.11","_npmUser":{"name":"agentiknet","email":"jeremy@agentik.net"},"homepage":"https://agentproto.sh","keywords":["agentproto","egress","proxy","secrets","agent-sandbox","open-standard"],"_resolved":"/tmp/49fdda068895da1e891b8b47c5bbae31/agentproto-egress-0.1.11.tgz","_integrity":"sha512-WjDO3zodhhFHuKPgWEkgrviwhDGzjfAn9fcB4Crz9YVSg7LWCwsisxv/rL111M6Pvf4n9GM4RIZzFP6bHmB7xw==","repository":{"url":"git+https://github.com/agentproto/ts.git","type":"git","directory":"packages/egress"},"_npmVersion":"10.9.8","description":"@agentproto/egress — outbound traffic control for agent sandboxes. Mode registry (off / cooperative / strict / paranoid), provider allowlist, transport-agnostic proxy core, audit hooks. Cooperative mode delegates substitution to @agentproto/secrets so the","directories":{},"maintainers":[{"name":"agentiknet","email":"jeremy@agentik.net"}],"_nodeVersion":"22.23.2","dependencies":{"@agentproto/secrets":"1.2.0"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsup":"^8.5.1","vitest":"^3.2.7","typescript":"^5.9.3","@types/node":"^25.9.5","@agentproto/tooling":"0.1.0"},"_npmOperationalInternal":{"host":"s3://npm-registry-packages-npm-production","tmp":"tmp/egress_0.1.11_1790733094424_0.1525206179271401"}}},"time":{"created":"2026-06-20T17:05:44.186Z","modified":"2026-09-30T01:51:34.878Z","0.1.0-alpha.0":"2026-06-20T17:05:44.513Z","0.1.0":"2026-07-08T14:51:18.013Z","0.1.1":"2026-07-16T01:37:29.488Z","0.1.2":"2026-07-19T20:58:01.590Z","0.1.3":"2026-07-27T12:01:08.287Z","0.1.5":"2026-09-01T16:29:43.238Z","0.1.6":"2026-09-09T13:33:20.168Z","0.1.7":"2026-09-17T11:02:26.580Z","0.1.8":"2026-09-27T02:46:41.443Z","0.1.9":"2026-09-27T23:02:40.269Z","0.1.10":"2026-09-29T17:22:05.907Z","0.1.11":"2026-09-30T01:51:34.525Z"},"bugs":{"url":"https://github.com/agentproto/ts/issues"},"license":"Apache-2.0","homepage":"https://agentproto.sh","keywords":["agentproto","egress","proxy","secrets","agent-sandbox","open-standard"],"repository":{"url":"git+https://github.com/agentproto/ts.git","type":"git","directory":"packages/egress"},"description":"@agentproto/egress — outbound traffic control for agent sandboxes. Mode registry (off / cooperative / strict / paranoid), provider allowlist, transport-agnostic proxy core, audit hooks. Cooperative mode delegates substitution to @agentproto/secrets so the","maintainers":[{"name":"agentiknet","email":"jeremy@agentik.net"}],"readme":"# @agentproto/egress\n\nOutbound traffic control for agent sandboxes. Mode registry, provider allowlist, transport-agnostic proxy core.\n\n```bash\nnpm install @agentproto/egress\n```\n\n## Concept\n\nAgent CLIs make outbound HTTP calls to upstream APIs (OpenAI, Anthropic, custom MCP servers, …). Letting the agent hold raw API keys means a `printenv` or prompt-injection-driven exfil leaks them. This package implements **the egress side of \"agent uses the credential but never sees it\"**: cooperative mode injects `$$SECRET[NAME]$$` placeholders into the agent's env; the host's egress proxy substitutes the real value at the network boundary.\n\n## Modes\n\n```\noff          no controls — raw creds in agent env (today's default)\ncooperative  $$SECRET[NAME]$$ placeholders + BASE_URL envs + HTTP_PROXY env\nstrict       cooperative + sandbox-level enforcement (NAT or runtime mandate)\nparanoid     strict + TLS-MITM (catches anything new)\n```\n\nHosts pick which modes their tier policy exposes. Bootstrap consumers branch on the mode's **declarative flags** (`emitsPlaceholders`, `emitsBaseUrlEnvs`, …) — never on the id, so adding a new mode never edits a switch.\n\n## Usage (host adapter)\n\n```ts\nimport {\n  proxyEgressRequest,\n  COMMON_EGRESS_PROVIDERS,\n  EgressError,\n} from \"@agentproto/egress\"\n\n// In your HTTP framework (Hono / Express / Bun):\nconst result = await proxyEgressRequest({\n  request: {\n    providerId: \"openai\",\n    path: \"/chat/completions\",\n    method: \"POST\",\n    headers: req.headers,\n    body: req.body,\n    search: req.search,\n  },\n  providers: COMMON_EGRESS_PROVIDERS,\n  resolver: async (name) => yourVault.lookup(guildId, name),\n})\n\nconst upstream = await fetch(result.url, {\n  method: result.method,\n  headers: result.headers,\n  body: result.body,\n})\n\n// Audit the substitutions\nfor (const r of result.substitutions) {\n  yourAudit.log({ guildId, secretName: r.name, resolved: r.resolved })\n}\n\nreturn upstream\n```\n\n## Modules\n\n- **`./modes`** — `EgressModeRegistry` + `DEFAULT_EGRESS_MODES`\n- **`./providers`** — `EgressProvider` + `COMMON_EGRESS_PROVIDERS` (openai, anthropic) + `composeEgressProviders` for extending\n- **`./proxy`** — `proxyEgressRequest` + `EgressError`\n\n## Related\n\n- **`@agentproto/secrets`** — declares `SecretExposure` shapes (env / file / egress-substitute) and the `$$SECRET[NAME]$$` substitution engine. This package depends on it.\n- **AIP-19** — SECRETS.md doctype declares what secrets exist + how they're exposed\n- **AIP-X (future)** — would standardize the egress mode taxonomy and the cooperative-mode wire shape\n\n## License\n\nMIT\n","readmeFilename":"README.md"}