Agent Governance Toolkit
Rencore Agent Governance Toolkit monitors agent guardrail activity across 12 policies, 5 reports, and 9 inventories, detecting prompt injection, MCP tool poisoning, blocked tool calls, and policy deny spikes automatically.
The Rencore Agent Governance Toolkit is a set of 12 policies, 5 reports, and 9 inventories that continuously audit agent guardrail activity for prompt injection, MCP tool poisoning, content violations, and blocked tool calls. It surfaces policy deny decisions, agent denial spikes, identity rejections, and escalation requests from the recent lookback window, and flags policies bound to no agents.
See Agent Governance Toolkit in Rencore
Every Agent Governance Toolkit object Rencore discovers and inventories across your tenant.
The governance policies Rencore evaluates against Agent Governance Toolkit, with severity and category.
Built-in Agent Governance Toolkit reports and analytics views in Rencore.
Why govern Agent Governance Toolkit with Rencore
Monitor agent guardrail decisions
Track policy deny decisions, blocked tool calls, and agent denial spikes as they happen. Reports break decisions down by outcome and rank the top agents by deny decisions.
Detect agent attacks and violations
Surface prompt injection, MCP tool poisoning, and content violations detected in the last 24 hours so a compromised or misbehaving agent is caught early.
Govern agent identity and escalations
Flag identity rejections and escalation requests, and review identity rejections grouped by agent to see which agents are pushing against their guardrails.
Audit policy coverage
Find policies bound to no agents, agents that have hit a guardrail, and high-volume agents in the lookback window so guardrail coverage matches real activity.
What Rencore discovers
Rencore automatically inventories these Agent Governance Toolkit object types.
How the Agent Governance Toolkit works in Rencore
Rencore inventories agents, policies, policy decisions, blocked tool calls, prompt injection events, identity events, MCP tool poisoning events, content violations, and escalations from the toolkit. Policies evaluate this guardrail activity on every scan cycle and flag violations with severity and a recommended action.
The runtime agent risk challenge
Lifecycle and inventory controls show which agents exist, but they do not show how those agents behave once they run. Prompt injection, poisoned tool calls, and content violations happen at runtime and leave the picture incomplete without guardrail telemetry. The Agent Governance Toolkit brings that runtime activity into the same dashboard as the rest of your agent governance.
Who uses the Agent Governance Toolkit
Heads of IT use it to see which agents are hitting guardrails. CISOs rely on the prompt injection, tool poisoning, and content violation policies to catch agent attacks early. M365 product owners use the policy-usage reports to confirm guardrails cover the agents that matter.
Getting started
Connect the toolkit to Rencore. All 12 policies activate on the first scan, covering policy decisions, blocked tool calls, prompt injection, and escalations. Reports and segments populate as soon as the first inventory completes.
Policies
12 governance rules that detect violations and risks.
Need a rule that isn't listed? Rencore's Policy Builder lets you create custom policies tailored to your organization.
Reports
5 analytics views and dashboards.
Segments
6 data groupings for targeted filtering.
Frequently asked questions
How does Rencore govern AI agents beyond Microsoft Copilot?
What is Rencore governance?
How do Rencore policies work?
Related guides
Trusted by