The Open Source Firewall for LLMs. A self-hosted gateway to secure and control AI applications with powerful guardrails.
-
Updated
Jun 25, 2025 - Python
The Open Source Firewall for LLMs. A self-hosted gateway to secure and control AI applications with powerful guardrails.
Open-source security gateway for LLM APIs — prompt injection detection, PII redaction, dangerous response sanitization, and audit logging. OpenAI/Claude compatible, MCP & Agent SKILL support. Drop-in proxy for AI coding agents (Cursor, Claude Code, Codex).
Ship AI agents with guardrails — not prayers. Self-hosted runtime protection for LLMs and tool-calling agents: block prompt injection, enforce tool permissions, redact sensitive data, and control what agents are allowed to do.
LLM Security Platform.
Deterministic AI defense framework: immutable input filtering, n-model cryptographic hash consensus, and self-learning adaptive rules. Zero dependencies. Hardware-sealed. Patent Pending.
Open-source AI security firewall. 81 engines for PII detection, prompt injection defense, MCP security, and egress classification. Local-first. Zero cloud dependency.
An inline LLM firewall with a sub-10 ms p99 latency target — built in layers across five documented phases. Sits between your app and any LLM endpoint to classify, redact, or block threats in real time, then continuously retrains itself when drift is detected.
Self-hosted LLM security proxy. PII redaction, prompt injection defense, KVKK/GDPR/PCI-DSS compliance. Sub-millisecond latency.
Self-learning prompt injection detection engine — 25 input detectors (10 languages), 5 output scanners, PII redaction, red team self-testing, F1: 96.0% with 0% false positives. Docker, GitHub Action, pre-commit, FastAPI/Flask/Django/LangChain/CrewAI/Dify/n8n.
Pure-Rust prompt-injection detector with 1.5MB embedded MLP classifier. 98.40% accuracy, p50 14ms CPU inference, bindings for Python/JS/Go. Apache-2.0/MIT alternative to Rebuff (archived) and Lakera Guard.
AegisMCP Enterprise is a dual-layer security gateway and cost firewall designed to sit between AI models (like Claude and Cursor) and execution engines.
Portable runtime policy and audit layer for AI agents - HTTP/HTTPS proxy enforcing egress policies, inspecting content, materializing secrets, and recording every decision.
LLM Security Platform Docs
Enterprise-grade prompt injection detection and AI firewall for LLM applications
🛡️ AI-Guard: The Open-Source Security Gateway & Audit Platform for AI Agents. Block injections, control permissions, and track LLM costs.
Open-source LLM firewall — drop-in OpenAI-compatible proxy with layered policy engine, jailbreak detection, audit logs, and a dashboard. Apache 2.0.
🛡️ Detect and block prompt injection attacks in LLM apps using pattern detectors, ML, and community-driven feedback to improve security.
Prompt-injection firewall for LLM agents. 6-layer pipeline (normalize, regex, MiniLM classifier, output guard, policy, audit) at <4ms p95. Python SDK + open benchmark (5,972 samples, F1 0.921).
Semantic Prompt Injection Firewall for Large Language Models using Sentence Transformers and XGBoost
Input/output safety firewall for LLM apps: PII redaction (Luhn-validated), prompt-injection/jailbreak detection, secrets + toxicity filters, with a labeled precision/recall benchmark. FastAPI + Claude.
Add a description, image, and links to the llm-firewall topic page so that developers can more easily learn about it.
To associate your repository with the llm-firewall topic, visit your repo's landing page and select "manage topics."