2026-10-11 17:11 UTC

Independent deployments will determine whether Numbat provides reliable endpoint-level visibility into AI agent activity sufficient for practical monitoring and auditing.

state: expiredheat: lowuncertainty: highconvergesscott: mediumagent-observability agentic-security execution-auditingPerplexity AI

What is this?

Numbat is an open-source, Apache-2.0 agent-security suite released by Perplexity AI to provide endpoint-level visibility across widely used client-side agent harnesses. Its stated capabilities include on-device detection, optional blocking before an action executes, structured activity logging, and forensic reconstruction for investigation and auditing. The supplied evidence establishes Perplexity’s claims and repository release, but provides no independent deployment results showing how reliable, complete, or operationally useful that visibility is in practice.

Why it matters to Scott

Perplexity’s Numbat independently converges with Scott’s structured agent-observability, execution-receipt and OS-level containment work, while potentially supplying a cross-harness endpoint layer relevant to SiloOS and trace-backed agent testing. The release creates a dated-receipts and practical evaluation opportunity, but its significance remains limited until independent deployments establish coverage, tamper resistance, privacy properties and blocking reliability.
ip:source.observability-for-agentic-systems-what-to-log-how-to-redact-how-to-debug-ebookip:concept.agent-observabilityip:framework.siloosip:framework.agent-provenance-stackip:concept.agent-receiptsdev:concept.trace-backed-agent-comparisondev:project.silo-osradar:concept.agent-observabilityradar:sentience-governor-agent-execution-trailsradar:concept.agent-harnesses
queries asked of Scott's wikis
  • endpoint observability for coding-agent harnesses
  • OS-level auditing versus harness-native agent tracing
  • pre-action policy enforcement for autonomous agents
  • tamper-resistant logs and forensic replay for agent execution
  • cross-harness security interfaces and event schemas
  • agent monitoring without exposing prompts or sensitive context

Measured heat

no measured readings yet — the hourly heat pass fills this in

How the heat travelled

no chain yet — the hourly chain pass fills this in

Evidence (6) — ⭐ canonical anchor

sourceobjectauthorscorecomments
🟧 hnNumbat by Perplexity: Endpoint visibility into AI agent activityhandfuloflight10
🟧 echo.github ⭐An open-source endpoint-visibility tool for observing AI agent activity.Perplexity AI——
🟧 hnAI Agent Sandboxes Stop Escapes. They Don't Tell You What Happened Insidewakahiu10
🟧 hnShow HN: Rungraph – See your AI coding-agent runs as a graphFayzanMalik10
🟠 redditClaude Code: I built a local heartbeat that reports whether hooks are actually firing
ClaudeAI
blitzcrieg1101
🟠 redditI’m a vibe coder. I may have taken this too far...
ClaudeAI
Rebekator22

Interpretation history

Decision trace