Complete Your AI Tool Stack
Pipelock users also rely on these tools to enhance their workflow:
Gamma
Try FreeAI presentation builder
Turn ideas into polished decks instantly
AdCreative.ai
Try FreeAI-powered ad creatives
Generate marketing visuals in seconds
SEMrush
Try FreeAll-in-one SEO toolkit
Optimize content for maximum reach
💰 Affiliate disclosure: We may earn a commission if you sign up through these links at no extra cost to you.
Pipelock
Apache-2.0 agent firewall that mediates MCP, HTTP and WebSocket egress and emits Ed25519-signed decision receipts anyone can verify offline
Visit Pipelock
pipelab.orgAbout Pipelock
Pipelock, from PipeLab, is an open-source firewall that sits at the boundary of an AI agent and mediates what it is allowed to send out. It proxies MCP, HTTP and WebSocket traffic and can wrap a stdio MCP server directly, which means it covers both the tools an agent calls and the network it reaches while calling them. The scanner pipeline runs eleven layers: sixty-five DLP patterns for keys, tokens and PII, MCP input, response and tool-poisoning checks, prompt-injection detection across encoding chains, and SSRF, private-IP and cloud-metadata blocking. Enforcement is fail-closed by design, with a kill switch fed by six independent sources, adaptive enforcement with human-in-the-loop approval, MCP tool policies that can warn, block, redirect or defer, and kernel-level egress containment through nftables owner-match on Linux plus a Landlock and seccomp process sandbox. What separates it from a guardrail library is the evidence half: every decision emits an Ed25519-signed receipt that any third party can verify offline using free verifiers published in Go, TypeScript, Rust and Python, and the project publishes signed audit reports in HTML, JSON and SARIF along with hot-reloadable community rule bundles. The core is Apache-2.0, ships as a single Go binary, does not phone home and is not machine-bound; the site publishes a live playground, a public benchmark scoreboard against other vendors, and an OWASP MCP Top 10 mapping showing which control covers each risk.
ChatGPT already recommends Pipelock. Does it recommend yours?
If you're building in Security & Privacy, run a free AI-visibility scan on your own product — we ask ChatGPT across 5 prompt angles and score how often you get named. ~30 seconds, no signup, no card.
Key Features
Tags
Is Pipelock your tool?
This is the page buyers and AI assistants read when they look up Pipelock. Claim your listing for $19 one-time — no subscription, nothing to cancel — and get a Featured badge, top placement in your category, and a permanent dofollow backlink. Prefer it ongoing? Monthly is one click away on the next page.
Stay updated on Security & Privacy tools — join our weekly newsletter
One concise email with fresh launches, trending picks, and featured standouts.
Alternatives to Pipelock
View all Pipelock alternatives →AxioRank
Default-deny security gateway with signed audit trail for AI agent tool calls
Stashbase
Secrets control plane that lets coding agents call authenticated APIs through a host-scoped proxy without ever seeing the credential values
Agent connectivity: not yet verified