Enables MCP clients to safely connect to MCP servers by sanitizing sensitive data in tool results and restoring it in tool arguments, so the model never sees PII while downstream tools still receive real values.
Provides MCP clients a single decision-only tool to classify prompts as safe for local or cloud models, or as containing PII or jailbreak content, without executing actions or calling AI models.
33 npm
Cryptographic Autonomy 1.0 (Combined Work Exception)
Enables safe interaction with cloud LLMs by redacting sensitive entities into reversible placeholders, enforcing deterministic egress policies with human approval, and rehydrating responses so real data never leaves the process.
Enables scanning LLM prompts and responses for prompt injection, jailbreaks, PII leakage, secret leakage, and other malicious content using deterministic rules, returning verdicts and safe redacted text.