HOL Guard vs PentAGI
HOL Guard leads on trust: 92.2/100 (Grade A) against 57.6/100 (Grade C), a 34.6-point gap. HOL Guard leads on supply-chain integrity and provenance, and rests on broader evidence.
Open-source antivirus for AI agents: block risky tools, secret access, prompt injection, malicious packages, MCP servers, plugins, and skills at runtime.
Choose HOL Guard if supply-chain integrity and provenance matter most.
- +12.5Safety / Integrity: OSSF Scorecard 9.6 against 5.6
- +7.2Identity / Provenance: package provenance attested, against none
- +6.7Maintenance: last push today, against 1d ago
- +3.4Transparency: OSSF Scorecard 9.6 against 5.6
Fully autonomous AI Agents system capable of performing complex penetration testing tasks
PentAGI doesn't lead on any scored dimension in this pair.
Where they differ
An independent, evidence-based trust comparison of HOL Guard and PentAGI, two Security & Guardrails projects in the HVTracker registry. Scores come from public, checkable signals — supply-chain provenance, OSSF Scorecard, maintenance, and adoption — not popularity.
Full evidence
| Signal | HOL Guardhashgraph-online/hol-guard | PentAGIvxcontrol/pentagi |
|---|---|---|
| HVTrust score | 92.2 | 57.6 |
| Evidence grade | A | C |
| Coverage grade | B | C |
| Overall rank | #7 | #708 |
| Rank in Security & Guardrails | #1 | #8 |
| GitHub stars | 683 | 25.2k |
| Last updated | today | 1d ago |
| Build provenance | Yes | No |
| OSSF Scorecard | 9.6 / 10 | 5.6 / 10 |
| License | Apache-2.0 | MIT |
| Downloads | 9k/wk | — |
| Trust dimensions (points earned) | ||
| Safety / integrity / 25 | 24.4 | 11.9 |
| Identity & provenance / 18 | 18.0 | 10.8 |
| Transparency / 17 | 16.7 | 13.3 |
| Maintenance / 20 | 20.0 | 13.3 |
| Adoption / 20 | 12.1 | 10.6 |
| Runtime capability surface (full matrix) | ||
| MCP server | Implemented | Implemented |
| External providers | 3 — Anthropic, Google Gemini, Multi-provider (LiteLLM) | 7 — Anthropic, DeepSeek, Firecrawl, … |
| Requires API keys | No | Yes |
| Plugin surface | extensions | plugins |
| Provenance drift | Match | — |
How to read this: HVTrust (0–100) weighs supply-chain signals (provenance, OSSF Scorecard, signed commits, open license) alongside real-world adoption, scaled by an evidence-confidence factor. Grade bands: A ≥ 80, B ≥ 65, C ≥ 50, D < 50. Signals refresh daily. Full methodology v4.4 →