nowfound

Alternatives

Products that do what Watchtower does

Task-scoped runtime security for AI agents

  1. 1

    Get real-world tasks done with autonomous AI agents

    Jun 2026

  2. 2

    Trace LLM requests + costs with OpenTelemetry monitoring

    Oct 2025

  3. 3
    Openbase216

    Manage your team of AI agents by voice, from anywhere

    Jul 2026 · openbase.cloud

  4. 4

    Codex-powered agents for teams.

    Apr 2026

  5. 5

    Open-source runtime for durable AI agents

    May 2026

  6. 6
    BU138

    Openclaw in the cloud

    Mar 2026

  7. 7

    Build & scale AI \ agents as microservices with IAM

    Dec 2025

  8. 8
    AgentOS100

    Manage AI agents, tasks, workspaces from one control layer

    Jun 2026

  9. 9
    HOL Guard106

    The 1st Firewall for AI Agents

    Jul 2026 · hol.org

  10. 10
    VidClaw102

    An open-source, self-hosted Kanban for your OpenClaw agent.

    Feb 2026

  11. 11
    Warren86

    Infrastructure for coding-agent workloads

    11d ago · warren.run

  12. 12

    LLM-usage observability and monitoring tool

    2025

  13. 13

    Zero-config hosting to launch specialized AI teams instantly

    Feb 2026

  14. 14AP

    Hi HN, I’m a solo developer and built AgentWatch to solve a problem I kept running into while building AI agents: preventing runaway loops and unexpected LLM spend before requests reach the model. AgentWatch sits in front of OpenAI, Anthropic, Gemini, Bedrock, Azure OpenAI, Groq, and others to enforce budgets and runtime policies. I’d really appreciate your feedback. If you’re building AI agents, does this solve a problem you’ve experienced? I’d also love to hear what you’d improve or challenge.

    Jun 2026 · agent-watch.dev

  15. 15

    Open-source memory runtime for production AI agents.

    25d ago · statewave.ai

  16. 16LO

    Latch is an open-source proxy that sits between AI agents and the tools they use. It intercepts all tool calls and applies security policies in real-time: Safe operations pass through instantly. Risky operations require human approval via dashboard or Telegram. Dangerous operations are blocked completely I built Latch to address the growing security risks of AI agents accessing critical systems. There have been 1,800+ exposed agent gateways discovered in the wild and recent security audits showing multiple vulnerabilities in agent frameworks, so this was motivated by the clear urgent need…

    Feb 2026 · latchagent.com

  17. 17CA

    TL;DR: we built a framework-agnostic agent runtime that uses gVisor for isolation and runs on k8s. It’s open-source under AGPLv3 Recently we’ve been working on a customer support “AI assistant” - essentially an interactive knowledge base/L1 support but with an option to touch resources that belong to a customer it’s talking to. We found existing tools to be lacking in these aspects: 1. Fully intercepted i/o. We wanted to trace out LLM calls as well as any other networking calls attempted by the harness so that guardrails and audit trails apply to all current and future systems…

    Jul 2026 · github.com

  18. 18

    Control AI access, cost, usage, and governance in one place

    19d ago · owlvigil.com

  19. 19OS

    I built a skill library for OpenClaw (always-on AI agent runtime, not session-based) where the agent can teach itself new behaviors during normal conversation. The idea: you tell your agent "every time I ask for a code review, always check for security issues first." It invokes a create-skill skill, writes a new SKILL.md, and that behavior is live immediately — no restart, no config change, no developer required. What I think is actually useful (the safety cluster): • loop-circuit-breaker: OpenClaw retries ALL errors identically. This halts on the 2nd identical failure before it burns your…

    Mar 2026 · github.com

  20. 20IB

    Hi HN, I’m the creator of Cordum. I’ve been working in DevOps and infrastructure for years (currently in the fintech/security space), and as I started playing with AI agents, I noticed a scary pattern. Most "safety" mechanisms rely on system prompts ("Please don't do X") or flimsy Python logic inside the agent itself. If we treat agents as autonomous employees, giving them root access and hoping they listen to instructions felt insane to me. I wanted a way to enforce hard constraints that the LLM cannot override, no matter how "jailbroken" it gets. So I built Cordum. It’s an open-source…

    Jan 2026 · github.com

  21. 21
  22. 22

    Your agent is one document away from a breach.

    25d ago · agentinterdict.pages.dev

  23. 23
    Brain8

    A small, blazingly fast and extensible agent runtime

    3d ago · github.com

  24. 24OS

    TankWork is an open-source desktop agent framework that enables AI to perceive and control your computer through computer vision and system-level interactions. Agents can: Control your computer directly through voice or text commands Process real-time screen content using computer vision and expert skill routing Interact through natural language voice commands and text input Provide continuous audio-visual feedback and action logging Switch seamlessly between assistant and computer control modes

    2025 · github.com

Ranked by how close each launch is in meaning, then by votes. Refine with a description →