Keep AI agent and MCP tool execution governed, authorised, and auditable in Docker.
1.4K

Decionis adds an execution-authority layer to Docker-based AI and automation workflows.
Before a consequential action proceeds, Decionis evaluates it against deterministic policy and returns an explicit outcome such as PROCEED, HOLD, or BLOCK.
Use Decionis with containerized AI agents, MCP servers, CI/CD workflows, developer tools, and automated services that need clear execution boundaries.
When policy requires human authority, Decionis Presence can request verified approval before execution continues.
Every governed decision can produce a signed Decision Dossier containing the policy version, reason codes, evaluation context, evidence hash, and cryptographic signature.
Typical use cases include:
Decionis does not execute downstream actions. It evaluates whether an action is authorized to proceed; the connected agent, tool, or system remains responsible for execution.
Your agents have tools. Decionis provides the authority boundary.
Until the extension is listed in the Docker Desktop Extensions Marketplace, install it directly (Docker Desktop → Settings → Extensions → allow non-marketplace extensions):
docker extension install decionis/desktop-extension:0.1.8
Then open the Decionis tab. That is the whole setup: a workspace is created for you on first run and the decision feed is live — no account, no sign-in, nothing to paste. Already have a Decionis account? Open Settings and sign in with your email and password; Decionis finds your workspace and issues the extension its own credential, so there is no workspace ID or API key to copy. Every credential is minted server-side and held by the extension backend only.
Shadow by default. Decionis records decisions and gates nothing until you tick Enforce decisions. A new workspace includes 25 free governed (enforcing) decisions; shadow evaluations are unlimited.
The zero-credential sibling of this extension is the
decionis/mcp image: the Decionis
local MCP evaluator that lets AI coding agents evaluate candidate actions
against a repository's DECIONIS_POLICY.md — zero network, zero credentials,
nothing recorded.
Content type
Image
Digest
sha256:6ed4684a1…
Size
7 MB
Last updated
about 1 month ago
docker pull decionis/desktop-extension