AI agents will always hallucinate and break things โ we make their mistakes harmless. ThumbGate runs in the PreToolUse hook on your machine and blocks the dangerous tool call โ rm -rf, leaked keys, off-scope edits, a bad git push โ before it executes. No server, no gateway, no waiting on an enterprise rollout.
Sync, proof, exports.
Pay $19/mo with Stripe โShared enforcement, scoped.
Talk to us โLocal proof first.
“A better dashboard doesn’t make the agents more reliable. The hard part isn’t visibility. It’s trust.”
Local-first is the new default
Perplexity demoed a Personal Computer agent at Computex 2026 that asks the user before sending sensitive content to the cloud. Automation Anywhere shipped EnterpriseClaw with Cisco, NVIDIA, Okta, and OpenAI โ central policy, locally enforced, audit reported back. The architectural debate is settled. ThumbGate runs the same pattern for the coding agent already on your laptop.
Install, give one thumbs-down, and let the PreToolUse hook stop that failure from rerunning. Upgrade only when you need dashboards, exports, or shared team enforcement.
Run npx thumbgate init in your repo. Claude, Cursor, Codex, Gemini, Amp, Cline, and OpenCode are supported through local hook or MCP-compatible setup paths.
Use thumbs up for a good pattern and thumbs down for a failure. ThumbGate distills the correction into a concrete prevention rule.
The next matching tool call is stopped before execution, with a reason the agent can use to choose a safer plan.
For consultancies, platform teams, and AI product teams that want workflow governance, CLI-first rollout, and a reliable operator.
Have one AI-agent failure that keeps repeating? Start with one real workflow, one repeated failure pattern, enforceable pre-action gates, and a short audit trail your team can keep.
Prove one blocked repeat before asking anyone to buy. Give thumbs up when the agent follows your standards, thumbs down when it misses. Upgrade after one real blocked repeat.
Workflow governance for isolated execution: ThumbGate pairs policy checks with Docker Sandboxes, signed hosted sandbox dispatch, Changeset evidence, and exact main-branch merge commit verification before release claims ship.
The market is converging on agentic development as a control loop, not a code-generation trick. The New Stack's May 2026 AC/DC framing names the core stages: Guide, Generate, Verify, and Solve. ThumbGate gives that loop a hard pre-action boundary so agent work is governed before it touches files, terminals, CI, payments, or production systems.
Rules, standards, past thumbs-downs, workflow boundaries, and approval policies are loaded as concrete operating context instead of vague prompt advice.
Claude Code, Cursor, Codex, Gemini, Amp, Cline, OpenCode, and MCP-compatible agents keep generating plans, edits, and tool calls.
Pre-Action Checks require inspection evidence, tests, CI, screenshots, API responses, or human approval before high-risk actions proceed.
Blocked failures and accepted fixes become lessons, shared rules, DPO exports, and audit events so the same mistake is not paid for again.
Verification after a pull request is useful, but it is too late for force-pushes, destructive SQL, unsafe deploys, leaked secrets, and costly external API calls. ThumbGate checks the action before it runs, then feeds the result back into the next Guide and Solve cycle.
This is the entire product in 2 lines. Install, give feedback, checks auto-generate.
Codex, Claude Code, ChatGPT, and other agent surfaces can collect preference signals, but you usually cannot see exactly what changed, which rule will fire, or why a future tool call is allowed. ThumbGate keeps the prevention layer outside the model: typed feedback becomes a local lesson, repeated mistakes become explicit rules, and every block names the matched rule, source lesson, tool call, and audit event.
Native thumbs and vendor memories may improve future behavior, but they do not give teams a deterministic allow/block contract at the moment an agent touches files, terminals, APIs, or CI.
Lessons live in your ThumbGate store, can be searched, exported as JSONL or DPO pairs, and traced back to the exact correction that created the rule.
The final decision is not another model opinion. ThumbGate checks tool name, arguments, working directory, command shape, confidence, and required evidence before the action runs.
Sources to verify the market timing: Docker on AI coding agent security risks, TechRadar on enterprise agent security pressure, and current MCP adoption coverage.
Claude renders the live ThumbGate footer now. npx thumbgate init --agent codex installs the same Codex hook bundle and writes the ThumbGate statusLine target so you can test it on your local Codex build immediately.
ThumbGate ships a published Claude Desktop extension bundle (.mcpb) you can install today. Claude Code users can also add the repo marketplace plugin immediately. No waiting for directory approval.
Run npx thumbgate init --agent claude-code or add via claude mcp add thumbgate -- npx --yes --package thumbgate thumbgate serve
Download the .mcpb bundle for Claude Desktop, or use the repo marketplace: /plugin marketplace add IgorGanapolsky/ThumbGate
Type thumbs down when Claude makes a mistake. ThumbGate distills a lesson from up to 8 prior entries and blocks the pattern permanently via PreToolUse hooks.
Claude Code Skill: Type /thumbgate in any Claude Code session. Auto-triggers on โcheckโ, โfeedbackโ, โblock mistakeโ. Free skill on top of the same local gateway.
ThumbGate should meet users where they already ask AI for help. The live GPT is the fastest way to preflight a risky action, capture a typed thumbs-up/down lesson, and prove the enforcement loop before installing anything. As ChatGPT ads roll out, this matters more: ChatGPT can stay the discovery and checkpointing layer, while ThumbGate remains the hard execution boundary after npx thumbgate init.
Paste a proposed command, file edit, merge, deploy, refund, invoice, or API call and ask whether to allow, block, or checkpoint it.
Reply in chat with thumbs up: or thumbs down: plus one concrete sentence. Do not rely on ChatGPT's native rating buttons for ThumbGate memory.
Run npx thumbgate init in the repo so Pre-Action Checks block repeated mistakes before the coding agent executes them.
Find it fast: if the direct link does not open, go to Explore GPTs, search ThumbGate, and choose the GPT by Igor Ganapolsky in Programming. Plain English rule: ChatGPT is the discovery and memory surface for advice, checkpointing, and typed feedback capture. One typed signal becomes one remembered rule. The hard Reliability Gateway still runs in the local agent or CI lane.
Install the published Claude Desktop plugin .mcpb bundle today. Claude Code users can add the repo marketplace immediately with /plugin marketplace add. No waiting for directory approval. 60-second setup guide โ
Type /thumbgate in any Claude Code session. Auto-triggers on "check", "feedback", "block mistake". Free skill on top of the same local gateway teams later harden into a shared workflow.
Claude Code, Codex, Gemini CLI, Amp, and OpenCode all use the same gateway and memory model. Any MCP-compatible agent gets pre-action checks, feedback memory, and enforcement out of the box.
Cloud Next 2026 shipped BigQuery, Spanner, AlloyDB, and Cloud SQL as MCP tool calls into Claude Code, Codex, and Gemini CLI. ThumbGate checks the destructive ones โ DROP on prod datasets, unscoped DELETEs, IAM escalation โ before they fire.
Codex gets a standalone ThumbGate plugin bundle, a repo-local plugin profile, and the same auto-updating MCP launcher. The runtime resolves thumbgate@latest when Codex starts, so npm fixes reach active installs. The install page includes the zip, MCP config, and verification path in one place.
Drop the ThumbGate MCP config into .cursor/mcp.json and Cursor gets the same pre-action checks as Claude Code and Codex. Ships with bundled rules, commands, hooks, and agents. The runtime install works today via npx thumbgate init --agent cursor; the official Cursor Marketplace listing was submitted 2026-05-19 and is awaiting Cursor's manual review.
VS Code works when you run an MCP-compatible agent inside it (Continue, Cline, etc.). Any editor that speaks MCP stdio gets the same gateway.
ThumbGate is listed on mcp.so so MCP-compatible clients can verify the package, copy the npx config, and confirm they are installing the real Pre-Action Checks server.
Open the ThumbGate GPT to preflight risky commands, deploys, refunds, PR actions, and setup steps, capture thumbs-up/down lessons, and save typed signals. Real blocking for coding agents still runs locally after npx thumbgate init.
Search lessons, inspect checks, mark a review checkpoint, and see only what changed since the last pass. No signup or install required.
Open Dashboard Demo โEvery block explains why: which pattern matched, what evidence triggered it, and whether the rule came from your own corrections.
See which agents are creating review churn, which checks are saving time, and where rollout risk is still concentrated across the shared workflow.
High-risk local autonomy can route into Docker Sandboxes, while hosted team automations use a signed sandbox dispatch lane instead of running loose on a shared host.
Local enforcement data stays in the operator's ThumbGate feedback directory by default. Hosted checkout, intake, newsletter, team sync, and product analytics are labeled as hosted processing surfaces instead of being blurred into the local runtime.
Confidence tiers (none/low/medium/high) tell you when to trust the model vs fall back to rules. No guessing.
When the current Claude auto-capture hook only gets a vague thumbs-down, ThumbGate can reuse up to 8 prior recorded entries plus the failed tool call, then keep a linked 60-second feedback session open for later corrections instead of creating a dead-end note.
Big orchestration suites unify data, routes, and decisions. ThumbGate sits closer to the moment of execution: the point where an agent is about to run a shell command, ship a PR, approve a release, or repeat a mistake you already corrected. That is where workflow trust is won or lost.
Good at customer journeys, routing, and cross-system context. Weak when you need a coding agent or automation to stop before a destructive or low-trust action actually runs.
Turns operator feedback into Pre-Action Checks. It does not just remember the mistake. It blocks the repeat at the tool-call boundary across Claude Code, Cursor, Codex, Gemini, Amp, Cline, and OpenCode.
Use orchestration to decide what should happen next. Use ThumbGate to decide what is allowed to execute. That is the control layer enterprises actually need once agents touch repos, terminals, CI, or production workflows.
Autoresearch loops run experiments, inspect metrics, and accept better variants. ThumbGate gives those loops a Reliability Gateway: Pre-Action Checks for skipped holdout tests, fake proof, reward hacking, unsafe edits, and promotion without verification evidence.
Require primary and holdout checks before an agent can call a variant better. Block cherry-picked runs and missing baselines.
Promotion needs commands, logs, changed files, and verification evidence so the win survives review instead of becoming a vague claim.
Start with templates for npm test, Playwright duration, bundle size, lint, and CI failures, then add Team checks for shared workflows.
Grok-style skills are training users to expect persistent expertise across every surface. ThumbGate turns that expectation into a governed reliability layer: capture the correction once, export it as a portable skill or lesson bundle, then prove the next risky tool call was blocked before it ran.
Thumbs-up/down lessons become reusable rules and skill-pack context that can move across Claude Code, Cursor, Codex, Gemini, Amp, Cline, OpenCode, and MCP-compatible agents.
Persistent skills tell an agent what you prefer. ThumbGate checks whether the next action follows those preferences and blocks high-risk repeats before execution.
Every fired rule carries the source lesson, decision trace, and audit evidence, so teams can review which skill worked instead of trusting a hidden chatbot memory.
Give ๐ or ๐ on your AI agent's actions. Feedback is stored in a SQLite+FTS5 lesson DB. In the current Claude auto-capture hook, a vague thumbs-down can distill from up to 8 prior recorded entries and the failed tool call before promotion, then stay linked to a 60-second feedback session. Example: you ๐ a risky migration โ it auto-promotes to a "never run DROP on prod" check.
Repeated failures auto-promote into prevention rules. Thompson Sampling adapts which rules fire, and the reflector lane can propose a reusable rule from the same transcript so high-risk patterns get stricter enforcement while low-risk ones stay relaxed.
Rules become Pre-Action Checks that block your agent before it repeats the same mistake. Your agent can't force-push, skip tests, or repeat a refactor you already rejected. No more fix-loops.
Every block shows why: pattern match, evidence, confidence score.
Checks physically block tool calls. Not prompt tricks. Not "please don't."
Reasoning chains on every check decision. Thompson Sampling confidence tiers.
Repeated failures auto-promote to checks. Org dashboard shows all agents.
When Workflow Sentinel predicts a risky local action, ThumbGate can recommend Docker Sandboxes before the agent touches the host filesystem or broader credentials.
Changesets, SemVer, sync checks, and verification evidence make new package releases inspectable before a buyer trusts the next rollout.
npx thumbgate init --agent claude-code
Wires PreToolUse hooks automatically
npx thumbgate init --agent cursor
4 skills: feedback, rules, search, recall
npx thumbgate init --agent codex
6 skills including adversarial review
npx thumbgate init --agent gemini
Gemini CLI integration
npx thumbgate init --agent amp
Amp agent integration
npx thumbgate serve
MCP stdio server for any compatible client
Add to your claude_desktop_config.json:
{
"mcpServers": {
"thumbgate": {
"command": "npx",
"args": ["--yes", "--package", "thumbgate", "thumbgate", "serve"]
}
}
}
Official directory review is separate. Claude Code users can install immediately with /plugin marketplace add IgorGanapolsky/ThumbGate and /plugin install thumbgate@thumbgate-marketplace.
| Free $0 forever |
Pro $19/mo or $149/yr |
Enterprise Custom โ scoped after intake |
|
|---|---|---|---|
| Local PreToolUse enforcement (all agents) | โ | โ | โ |
| Feedback captures | 5/day (25 total) | Unlimited | Unlimited |
| Active auto-promoted prevention rules | 3 | Unlimited | Unlimited |
| Lesson recall + search across sessions | โ | โ | โ |
| Personal dashboard + DPO export | โ | โ | โ |
| Hosted sync across machines | โ | โ | โ |
| Shared lesson database + org dashboard | โ | โ | โ |
| Org-wide shared enforcement + approval boundaries | โ | โ | โ |
| Audit trail, SSO, regulatory gate templates | โ | โ | โ |
| Best for | One developer | Solo operators | Teams & regulated orgs |
5 captures/day, 3 active rules. Enough to see the value โ upgrade when you need more.
Billed today ยท cancel anytime.
| Capability | Free | Pro | Enterprise |
|---|---|---|---|
| Best for | Solo proof that a repeat mistake can be blocked | One operator who wants hosted sync, dashboard proof, and exports | Teams & regulated orgs โ one person's correction protects every seat; banking, insurance, healthcare, public sector, audited workflows |
| Price | $0 | $19/mo or $149/yr | Custom โ scoped after intake |
| Feedback captures | 5/day, 25 total | Unlimited | Unlimited, shared across the org; custom retention and evidence policy |
| Active prevention rules | 3 active rules | Unlimited personal rules | Shared org rules, policy templates, approvals, and audit export |
| Dashboard and proof | Local CLI evidence | Personal dashboard, check debugger, DPO/HF exports | Org dashboard, hosted review views, rollout proof, SIEM-ready decision trail and compliance evidence |
| How to start | npx thumbgate init |
Self-serve Stripe checkout | Send one repeated workflow failure first โ intake before checkout |
Free proves the enforcement loop. Pro removes solo limits. Enterprise plans start through intake because shared rules, permissions, rollback paths, and rollout proof must be explicit before checkout.
npx thumbgate setup-vertex); no conversational data leaves your VPCPricing is workflow-scoped and shared after the intake call. Annual pre-pay available.
This is the fastest path to first paid value for teams. Start with one repo, one workflow owner, and one blocker. The intake is designed to prove that ThumbGate reduces review churn, rollout risk, or repeated agent mistakes before a wider rollout.
The highest-fit Enterprise buyer is already feeling one repeated failure. Send the workflow first so the next step is scoped around the real blocker instead of a blind checkout.
npx thumbgate init --agent cursor; the Cursor Marketplace listing was submitted 2026-05-19 and is still pending Cursor's manual review, so it is not yet discoverable from the in-app Marketplace. Codex now ships both a standalone plugin bundle and a repo-local app plugin profile, and the published download is linked directly from this page. VS Code works when you run an MCP-compatible agent inside it, but this repo does not ship a standalone VS Code extension today.npx thumbgate init.npx thumbgate setup-vertex detects your active gcloud session, enables the Vertex AI API on your Google Cloud project, and configures secure Application Default Credentials (ADC) so evaluations run within your corporate VPC. For Dialogflow CX, the Enterprise pilot puts ThumbGate's pre-action gate in front of your DFCX webhook fulfillment (deployed in your own tenant) so risky or repeat turns are blocked before they touch a database, CRM, or billing system. It's a white-glove design-partner pilot โ ThumbGate gates your own Dialogflow CX agent; it does not host a Dialogflow CX agent for you.Join the mailing list for new check patterns, agent integration updates, and product news. If you later choose Pro, we keep checkout prefilled on this device.
Install free. No credit card. No signup. Hit your first check in 60 seconds.