121 days until EU AI Act enforcement — start today

Start free.
Scale when you need it.

Open-source core covers 95% of teams. @lua-ai-global/governance-enterprise adds fleet analytics, RBAC, and multi-tenancy for regulated industries.

Open SourceMIT License
Freeforever
$npm i governance-sdk
  • Core policy engine13 condition types
  • Before-action enforcement
  • HMAC audit trailhash-chained, tamper-evident
  • 7-dimension scoring
  • Kill switchpriority 999
  • Injection detection64+ patterns
  • EU AI Act mapping6 articles
  • 20 framework adaptersMastra, Vercel AI, LangChain, OpenAI + 16 more
  • PostgreSQL + in-memory storage
  • 945+ tests, 0 deps
  • RBAC
  • Multi-tenant isolation
  • Fleet analytics
  • Policy templates
  • Priority support
ProMost popular
$12/ agent / month

per registered agent · billed monthly

  • Everything in Open Source
  • RBACrole-based access control
  • Multi-tenant isolationnamespace-isolated per tenant
  • Fleet analyticsenforcement rates, score trends
  • Policy templatesfintech, healthcare, SaaS presets
  • Policy suggestion engineagent-type-aware recommendations
  • Org management
  • Slack alertsenforcement events + kill switch
  • Priority support< 24h response
  • Unlimited saved policies
  • 90-day audit retention
  • Compliance reports
  • On-premise deployment
  • Dedicated CSM
  • SLA
EnterpriseFor regulated industries
Customcontact us
  • Everything in Pro
  • Unlimited agents
  • On-premise deploymentair-gapped environments
  • Compliance reportsEU AI Act audit export
  • Custom policy conditionsextend the engine
  • Dedicated CSM
  • 99.9% SLA
  • SOC 2 compliance docs
  • SSO / SAML
  • Security review
  • Training & onboarding
  • Custom integrations

All tiers include the full open-source SDK. @lua-ai-global/governance-enterprise is a separate package — no forking, no lock-in.

Common questions

Is the core SDK really free forever?

Yes. governance-sdk core is MIT licensed and will always be free and open source. @lua-ai-global/governance-enterprise is a separate package that adds team features (RBAC, multi-tenancy, analytics) on top of the open core.

What counts as an 'agent'?

Any registered agent in your fleet — a unique gov.register() call with a distinct name and owner. Static scripts that don't call gov.register() don't count.

Do I need Pro for EU AI Act compliance?

No. The free tier includes all 6 EU AI Act article mappings (Articles 9, 11, 12, 14, 15, 50), HMAC audit trails (Article 12), policy enforcement (Articles 9/15), and human oversight gates (Article 14). Pro adds compliance report exports.

Can I self-host Pro?

The enterprise module code ships in the npm package. Pro and Enterprise are licensing and support tiers — you deploy your own infrastructure. No SaaS lock-in.

What frameworks are supported?

20 adapters: Mastra, Vercel AI, LangChain, OpenAI Agents, Anthropic, MCP, CrewAI, Bedrock, Genkit, Semantic Kernel, AutoGen, A2A, LlamaIndex, Cloudflare AI, Deno, Mistral, Ollama, E2B, Composio, and more. Rolling your own takes under 50 lines.

Start governed in 5 minutes

Open-source core. No account, no API key, no lock-in.

$npm i governance-sdk
Read quickstart →