Shield Agent AI

← Docs hub

Customer guide

Observe sessions

Observe ingests AgentEvent-compatible sessions into /app/kya/sessions.

  • Tag sessions with host=ide or host=runtime.
  • Risk levels: LOW / MEDIUM / HIGH.
  • High risk raises policy tier. It does not approve side effects.
  • Clearance is separate: Read, Build, or Deploy. HIGH risk follows the workspace shrink mode.
  • Session detail shows tools when the payload includes them. A signed session claim is available on the plane.

Cost showback (observe only)

Showback is a report, not a billing meter and not a second policy gate. It never ALLOW / DENY / kill on spend.

OSS:

kya orr run --path . --out ./orr-out --usage ./.kya/usage.json

--usage must sit under --path. report.json gets a showback section (tokens, estimated USD by agent/run, subagents under parentRunId). Unknown models report tokens only.

Hosted: when session ingest includes usage[], the plane stores merchant-scoped usage and metrics can roll it up. Machine keys still cannot approve.

Enable via kya.adr-sensor-ingest flags. Developers: see session ingest API. Package README: cost showback section in @shield-agent/kya.

Docs hub · Install · How KYA works · Source