ChaCha: A Control Plane for Longitudinal Threat Detection in LLM Applications
Taishi Nagae, Conor Gould · Team ChaCha
Submitted to Defensive Acceleration Hackathon. Sprint projects are early-stage work by participants, not Apart Research publications.
Most LLM guardrails still treat safety as a per-request classification problem, even though real incidents like jailbreaks, reconnaissance, and data exfiltration typically emerge as behavioural patterns over time. ChaCha addresses this by acting as a longitudinal behavioural control plane: a lightweight SDK records messages, tool calls, CoT snippets, and decisions, and streams them to a multi-tenant backend that maintains per-session and per-identity state. LLM-based detectors analyse these evolving histories to produce a compact risk view that can drive real-time policies (block, throttle, escalate) and longer-horizon monitoring. Developers integrate ChaCha with a few lines of code, while security teams use a dashboard and policy engine to understand and manage AI risk. ChaCha is already structured as a product-ready, model-agnostic platform, and we plan to validate and harden it with initial design partners who are deploying high-stakes LLM workflows.

Reviews
No public critique yet.
Cite this project
@misc{nagae2025chacha,
title = {{ChaCha: A Control Plane for Longitudinal Threat Detection in LLM Applications}},
author = {Taishi Nagae and Conor Gould},
year = {2025},
month = nov,
note = {Submitted to Defensive Acceleration Hackathon, an Apart Research Sprint},
howpublished = {\url{https://apartresearch.com/sprints/projects/chacha-a-control-plane-for-longitudinal-threat-detection-in-llm-applications-kp70}},
url = {https://apartresearch.com/sprints/projects/chacha-a-control-plane-for-longitudinal-threat-detection-in-llm-applications-kp70}
}More from Defensive Acceleration Hackathon
- View project: Neops - DevSecOps for the AI era
Neops - DevSecOps for the AI era
Broad Bros
NEOps is a CLI-based tool that embeds AI safety into your product lifecycle from day one. While development teams routinely build cybersecurity checks, AI-safety often comes later—or not at all. NEOps fills that gap by …
- View project: Assisted Audit of Solana Programs
Assisted Audit of Solana Programs
GLAM
Multi-agent solution that assists in auditing Solana programs, allows to consolidate audit findings into a knowledge base, and can integrate into CI/CD pipelines to prevent security regressions.
- View project: Mechanistic Watchdog
Mechanistic Watchdog
SL5
Mechanistic Watchdog is a mechanistic-interpretability-based “cognitive kill switch” for language models. Instead of only filtering final text, we monitor a model’s internal activations in real time and learn linear …