Same engine as the project we fork. Here is what we add, and what we lack.

Warding is an Apache-2.0 derivative of Amazon’s open-source Kiro agent workspace. Most of the code is theirs; the attribution is in NOTICE, and the lineage page lists what we carry on top. If you use kiro-cli, use the upstream project: it is ahead, and we say so. We are not affiliated with Amazon.

The upstream project is further along than the version we forked. Since its 0.6 release it docks several agents besides kiro-cli, and it ships installers and a container image. We forked at 0.5.0, before all of that.

The upstream projectWarding
Governance engine: keystone paths, POLICY ∩ PROFILE, audit log, sandboxyesthe same engine
First launchguides you through installing kiro-cli and signing inno account with us; auto docks the first agent CLI you have installed
HarnessesUpstream docks kiro-cli, Claude Code, Codex, KAS, OpenCode, Pi and goose (the others in preview, behind Developer Mode)Cursor, Claude Code, Codex, Kimi, DeepSeek Harness, Goose, Grok, OpenCode, Pi, Droid, kiro-cli; mostly unverified. Both of us dock OpenCode
The agent's own tools on a non-Kiro harnessyes, except on Pinot yet: kiro-cli only; schedules from the dashboard and CLI instead
How many backends at onceone, set globallyone for chat, set globally
Sending a subagent to another harnessnot checked yetthe harness router: flat-rate quota before metered spend, the kind of task, a cooldown after a usage limit or a failed login; it never forwards provider traffic. Registered · unverified
Installers, wheel, Dockeryes: installers for macOS, Windows and Linux, a one-line wheel install, and Dockerno: public source publication pending
Chat channelsthe same ten; we inherited them from this enginethe same ten: five with approve buttons, one typed, four chat-only
What the default build contactsits own update feed and app catalognone of ours; the embedding model still comes from the CDN address upstream shipped, on first use, hash-checked
Version0.7.1based on 0.5.0; no tagged release yet
Dawn-expiring approval grants, a Morning Reportnoin development

What we add

  • A registry of eleven runtimes with kiro-cli optional and last. Five of our ten non-Kiro runtimes are ones the upstream project does not dock: Cursor, Kimi, DeepSeek Harness, Grok and Droid. Both of us dock OpenCode. The registry says what is verified on each, which today is little.
  • A harness router for subagents. Chat runs the one harness you choose; the router can send a spawned subagent to another installed harness and never forwards provider traffic. It is registered and unit-tested, not verified on a live run; whether upstream has an equivalent is not checked yet.
  • No first-launch account with us. You still need your agent vendor’s own login.
  • Endpoint removal. Upstream’s update feed, app catalog and telemetry are off by default; the one address left is the embedding download in the table.
  • Proof pages. A check on this site links to a dated row on the verification log.

What we lack

  • Installers, a wheel and a container image. The intended install is from a reviewed source checkout; public source publication is pending.
  • The agent’s own tools on other harnesses. Upstream passes its tools to every backend except Pi; we pass them to kiro-cli only, so on the others the agent cannot create a job, spawn a subagent or ask you a question from chat.
  • KAS, which upstream docks and we do not yet.
  • Maturity. Upstream is at a later version, with more people on it.

Fork strategy

We track upstream and rebase the carry-set onto it; the carry-set is listed on the lineage page. Upstream facts on this page come from its own documentation and changelog, read on 2026-09-25, linked below. Whether upstream requires a Kiro sign-in when you choose another backend is not something we have verified. Being checked

Sources

  1. Apache-2.0 license: attribution requirements
  2. Upstream documentation: agent backends (read 2026-09-25)
  3. Upstream changelog: the 0.6 release that added backends
  4. Upstream documentation: install and first launch

Review the local beta.

Apache-2.0 source publication is pending. Read the setup notes and verification limits.

Source publication pending

Public source, install commands and downloads are not available yet. A clean install and live workflow are not yet verified.

Source status Read beta notes