REPOGEO REPORT · LITE
provos/ironcurtain
Default branch master · commit 751c142f · scanned 6/15/2026, 4:51:44 AM
GitHub: 503 stars · 68 forks
Action plan is what to do next — copy-pasteable changes prioritized by impact. Category visibility is the real GEO test: when a user asks an AI a brand-free question that should surface provos/ironcurtain, does the AI actually recommend you — or your competitors? Objective checks verify the metadata signals AI engines weight first. Self-mention check detects whether AI even knows you exist by name.
Action plan — copy-paste fixes
2 prioritized changes generated by gemini-2.5-flash. Mark items done after you ship the fix.
- hightopics#1Expand repository topics to include relevant policy and AI security terms.
Why:
CURRENTagent, mcp, model-context-protocol, policy, sandbox, security, trusted-process
COPY-PASTE FIXagent, mcp, model-context-protocol, policy, sandbox, security, trusted-process, ai-security, policy-engine, access-control, ai-agents, runtime-security
- mediumabout#2Refine the repository description to emphasize the specific security problem solved.
Why:
CURRENTA secure* runtime for autonomous AI agents. Policy from plain-English constitutions. (*https://ironcurtain.dev)
COPY-PASTE FIXA secure runtime for autonomous AI agents, enforcing policy from plain-English constitutions to prevent ambient authority and data exfiltration.
Category GEO backends resolved for this scan: google/gemini-2.5-flash, deepseek/deepseek-v4-flash
Category visibility — the real GEO test
Brand-free queries asked to google/gemini-2.5-flash. Did AI recommend you, or someone else?
Same questions for every model — switch tabs to compare answers and rankings.
- Open Policy Agent (OPA) · recommended 2×
- Docker · recommended 1×
- Seccomp Profiles · recommended 1×
- Kubernetes · recommended 1×
- Pod Security Standards (PSS) · recommended 1×
- CATEGORY QUERYHow to safely execute autonomous AI agents with privilege separation?you: not recommendedAI recommended (in order):
- Docker
- Seccomp Profiles
- Kubernetes
- Pod Security Standards (PSS)
- Network Policies
- gVisor
- Firecracker
- AWS Lambda
- Google Cloud Run
- Fly.io
- Kata Containers
- SELinux
- AppArmor
- Open Policy Agent (OPA)
- Gatekeeper
AI recommended 15 alternatives but never named provos/ironcurtain. This is the gap to close.
Show full AI answer
- CATEGORY QUERYNeed a framework for defining AI agent security policies using human-readable rules.you: not recommendedAI recommended (in order):
- Open Policy Agent (OPA)
- Cerbos
- Casbin
- Permit.io
- AWS Identity and Access Management (IAM) Policies
- Google Cloud IAM Policies
- Microsoft Azure RBAC (Role-Based Access Control)
AI recommended 7 alternatives but never named provos/ironcurtain. This is the gap to close.
Show full AI answer
Objective checks
Rule-based audits of metadata signals AI engines weight most.
- Metadata completenesspass
- README presencepass
Self-mention check
Does AI even know your repo exists when asked about it directly?
- Compared to common alternatives in this category, what is the core differentiator of provos/ironcurtain?passAI named provos/ironcurtain explicitly
AI answers can be confidently wrong. Read for accuracy: does it match your actual tech stack, audience, and differentiator?
- If a team adopts provos/ironcurtain in production, what risks or prerequisites should they evaluate first?passAI named provos/ironcurtain explicitly
AI answers can be confidently wrong. Read for accuracy: does it match your actual tech stack, audience, and differentiator?
- In one sentence, what problem does the repo provos/ironcurtain solve, and who is the primary audience?passAI named provos/ironcurtain explicitly
AI answers can be confidently wrong. Read for accuracy: does it match your actual tech stack, audience, and differentiator?
Embed your GEO score
Drop this badge into the README of provos/ironcurtain. It auto-updates whenever the report is rescanned and links back to the latest report — easy public proof that you care about AI discoverability.
[](https://repogeo.com/en/r/provos/ironcurtain)<a href="https://repogeo.com/en/r/provos/ironcurtain"><img src="https://repogeo.com/badge/provos/ironcurtain.svg" alt="RepoGEO" /></a>Subscribe to Pro for deep diagnoses
provos/ironcurtain — Lite scans stay free; this card itemizes Pro deep limits vs Lite.
- Deep reports10 / month
- Brand-free category queries5 vs 2 in Lite
- Prioritized action items8 vs 3 in Lite