Skip to content
Choosing mitigations in the Ingrain TUI

Ingrain

Your coding agent writes the plan. Ingrain reviews it. You decide what ships.

Your agentic coding harness — Claude Code, Cursor, or spec-kit — generates plans and applies code changes. Ingrain hooks into that flow and runs a guided threat modeling pass on each plan, surfacing security issues your agent missed.

At a hook point, Ingrain opens its TUI in a new terminal window for you to walk through the identified threats and mitigations with an intuitive user flow. You pick the action points worth addressing, The harness then incorporates them into its plan and proceeds — security built in, with your judgement.

  • Installation — one-line install for macOS, Linux, and Windows.
  • Getting started — wire Ingrain into your harness and run your first review.
  • Commands — what each ingrain subcommand does.
  • Configuration — the conf.toml reference for customising providers, API keys, and the hook’s terminal.