ADR, short for Agentic AI Detection and Response, is an enterprise security system for monitoring and evaluating AI agents. It captures agent intent, tool activity, and execution traces from coding assistants, internal automations, and customer-facing agents. A normalized sensor layer provides observability across multiple agent tools and operating systems. ADR-Bench supplies more than 300 realistic tasks, 133 MCP servers, and coverage of 17 documented agent attack techniques. Its two-tier detector combines high-recall triage with deeper agentic analysis of suspicious sessions. The repository includes the open-source sensor, benchmark, detector baselines, evaluation workflows, and figure-generation scripts. Prevention and the offline ADR Explorer red-teaming engine are described by the project but are not included in this release.
Features
- Cross-platform AI agent telemetry collection
- Normalized intent, tool, and execution traces
- More than 300 enterprise security tasks
- Coverage of 17 agent attack techniques
- Two-tier suspicious-session detection
- Reproducible benchmarks and evaluation workflows