PolicyKit
AWS IAM for AI Agent Spending
PolicyKit is a financial authorization layer for autonomous AI agents. Before an agent can make any paid API call, provision cloud resources, or execute a financial transaction, PolicyKit evaluates the request against configurable policies, budgets, and approval workflows.
Why?
AI agents can spend real money, but they lack financial access controls.
Without authorization, a prompt injection, hallucination, or software bug can lead to:
- Uncontrolled API spending
- Unexpected cloud costs
- Unauthorized vendors
- Missing audit trails
- Compliance risks
PolicyKit ensures every spending decision is authorized before funds leave the wallet.
Features
- π Policy-based authorization
- π° Task, hourly, daily & monthly budgets
- π’ Vendor allowlists & blocklists
- π Category restrictions
- π€ Human approval workflows
- π Immutable audit logs
- β‘ x402 payment authorization
- π¨ Real-time anomaly detection
- π Admin dashboard
Architecture
AI Agent
β
Spend Request
β
βΌ
ββββββββββββββββββββββ
β PolicyKit β
ββββββββββββββββββββββ€
β Policy Engine β
β Budget Engine β
β Spend Controls β
β Human Approval β
β Audit Logs β
β x402 Payments β
ββββββββββββββββββββββ
β
Approve / Reject
β
βΌ
APIs β’ Cloud β’ Services
Tech Stack
Backend
- Node.js
- TypeScript
- Fastify
- Prisma
- PostgreSQL
- Redis
Frontend
- Next.js
- Tailwind CSS
- wagmi
Payments
- x402
- Base
- USDC
- Coinbase CDP SDK
Workflow
AI Agent
β
Spend Request
β
Policy Evaluation
βββ Budget
βββ Vendor
βββ Category
βββ Rules
β
βΌ
Approve?
βββ No β Reject + Audit
βββ Yes β Execute Payment
Performance
| Metric | Value |
|---|---|
| Authorization Latency | <30 ms |
| Payment Protocol | x402 |
| Blockchain | Base |
| Settlement | USDC |
Roadmap
- TypeScript SDK
- Python SDK
- LangChain integration
- CrewAI integration
- Multi-tenant support
- Policy versioning
- Natural language policies
Vision
PolicyKit aims to become the financial authorization layer for autonomous AI, bringing governance, security, and compliance to AI spendingβjust as AWS IAM did for cloud infrastructure.
Built with: Node.js Β· Fastify Β· PostgreSQL Β· Redis Β· Next.js Β· x402 Β· Base Β· USDC
Built With
- docker
- fastify
- metamask
- next.js
- node.js
- postgresql
- prisma
- react
- redis
- slack
- tailwindcss
- typescript
- upstash
- vercel
- x402-protocol
Log in or sign up for Devpost to join the conversation.