Transparent DLP proxy that scans every outbound request from your AI coding tools for secrets, PII, and proprietary data — before anything leaves your machine.
Zero external dependencies. Python stdlib only. Under 50ms scanning overhead.
34+ regex patterns plus Shannon entropy analysis. AWS, GitHub, Stripe, Slack, JWTs, database URLs, PEM keys, and more. Duplicates auto-collapsed.
8 validators with real checks: Luhn for credit cards, SSN range validation, IBAN MOD-97, IP range exclusion. Not just regex.
Real-time findings, severity charts, 30-day trends, audit log viewer. SSE live updates. Password auth with CSRF protection.
7 channel types: Webhook, Email, Slack, Teams, PagerDuty, OpsGenie, Jira. 1 free channel, unlimited with Pro.
Catch secrets before they enter conversation history. Git hook, CI integration, baseline management, JSON output.
Auto-identifies WHO, WHICH project, WHICH conversation per finding. 3-layer cross-request dedup: 70x faster repeat scans, HMAC secret hashing for cross-session tracking.
Single pip command. Zero dependencies to resolve.
Set one environment variable. Works with any provider.
See findings in terminal and dashboard in real-time.
Every request logged with provider, model, payload size, scan time, and action taken.
Every pattern validated, not just matched. False positives are the enemy.
Regex patterns plus Shannon entropy > 4.5 bits/char near secret keywords.
Each detector has real validation, not just pattern matching.
File patterns and keyword detection for sensitive content.
Built-in web dashboard at port 8081. No external dependencies. SSE live updates.
First scan runs full detection. Repeat requests skip already-scanned content — up to 70x faster. No commercial DLP has conversation-aware dedup for LLM traffic.
LLM APIs re-send full conversation history on every request. Without dedup, the same secret generates duplicate findings on every message. Our 3-layer dedup eliminates redundant scanning — only new content hits detectors.
Community is production-ready. Pro adds depth for teams and compliance.
Open source, MIT licensed, zero dependencies.