
Ingrain
Your coding agent writes the plan. Ingrain reviews it. You decide what ships.
How it fits
Section titled “How it fits”Your agentic coding harness — Claude Code, Cursor, or spec-kit — generates plans and applies code changes. Ingrain hooks into that flow and runs a guided threat modeling pass on each plan, surfacing security issues your agent missed.
At a hook point, Ingrain opens its TUI in a new terminal window for you to walk through the identified threats and mitigations with an intuitive user flow. You pick the action points worth addressing, The harness then incorporates them into its plan and proceeds — security built in, with your judgement.
Where to next
Section titled “Where to next”- Installation — one-line install for macOS, Linux, and Windows.
- Getting started — wire Ingrain into your harness and run your first review.
- Commands — what each
ingrainsubcommand does. - Configuration — the
conf.tomlreference for customising providers, API keys, and the hook’s terminal.