{"repo":"Szesnasty/ai-protector","free":true,"listed":false,"github":"https://github.com/Szesnasty/ai-protector","clone":"git clone https://github.com/Szesnasty/ai-protector.git","description":"Ship AI agents with guardrails — not prayers. Self-hosted runtime protection for LLMs and tool-calling agents: block prompt injection, enforce tool permissions, redact sensitive data, and control what agents are allowed to do.","language":"Python","stars":42,"topics":["agent-security","ai-agents","ai-security","guardrails","langgraph","llm-firewall","llm-security","openai-compatible","prompt-injection","self-hosted"],"license":"Apache-2.0","category":"ai-agents","readme_excerpt":"AI Protector Ship AI agents with guardrails — not prayers. AI Protector is an AI agent security runtime — a deterministic layer in the path of every model call and tool action that stops prompt injection, unauthorized tool use, and data leaks. No LLM in the loop · 50 ms · fully local. ⚖️ And unlike most, it's provable. Find what gets through (Benchmark Hub), enforce it (the runtime), prove it held — with a grader validated against objective ground truth (planted secret/canary, no LLM-as-judge ): 94% → 99% verdict accuracy. A score you can't validate isn't proof. 📊 Benchmark matrix → blocked % and latency per mode On the current frozen benchmark suite, AI Protector blocks 99% of JailbreakBench artifacts and — with the harm guard — 91% of promptfoo red-team attacks , at a low false-positive rate (0% on the fast path; 0.7% with the harm guard on 440 benign prompts). The benchmark is deterministic, reproducible, and does not use LLM-as-judge . Fast path adds 48 ms and runs fully local (no external API calls). → Full benchmark matrix: detection, false positives, latency & limitations per mode Try the demo in 5 min — git clone && make demo → open http://localhost:3000 → Security Scan → run Scan your OpenAI-compatible endpoint — enter its URL in Security Scan and run the same 50+ attack scenarios against it --- Quickstart Local demo (no API keys, no GPU) Open http://localhost:3000 . make demo starts the full stack: proxy firewall, two test agents (LangGraph + pure Python), a mock c","default_branch":null,"files":null,"tree":[],"storefront":"/r/Szesnasty","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/Szesnasty/ai-protector/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}