A runtime that sits between every agent and every tool, deciding which actions ship and which get clarified, repaired, or held. One contract on the action path, across your entire stack.
Salus does not just block. It clarifies, repairs, rewrites, or escalates, then lets the corrected action through. Most actions ship. The dangerous ones ship better. Every decision is logged with the policy and evidence behind it.
Sample interventions, anonymized from design-partner traces.
Salus is a policy-aware proxy in front of every tool your agent already calls. Keep your stack. Change the URL. The agent does not know the difference. Your trust ledger does.
You do not rebuild the agent. You change the endpoint.
OpenAI, Anthropic, Gemini, any tool-calling LLM.
LangChain, LangGraph, CrewAI, LlamaIndex, your own loop.
Retell, Vapi, any audio loop.
MCP servers, REST, SDKs, internal services.
If your agent can call a tool, Salus can sit on that path.
See Salus enforce a tool flow in five minutes, on whichever stack you already use. We will replay one of yesterday's sessions and show you the actions Salus would have decided differently.
Book a demo →