ShellWard

Security middleware that protects agents from prompt injection, data exfiltration, and dangerous command execution with 8-layer de

jnmetacode 123 ↓ 5.9k
Claude CodeClaude DesktopGeneric
View source ↗

ShellWard intercepts tool calls at runtime to enforce security guardrails using an 8-layer defense architecture. It provides DLP-style data flow control that blocks outbound data transmission when sensitive information was recently accessed, prompt injection detection with 32 rules covering English and Chinese, dangerous command blocking, PII scanning, and session monitoring. Works as a standalone SDK or MCP server with zero dependencies across Claude Desktop, Cursor, and other MCP-compatible clients.

Source

Repository: https://github.com/jnmetacode/shellward

Maintain ShellWard?

Let people know it's listed here — add the badge (live metrics, light/dark aware) or a plain link to your README or docs.

ShellWard on getagentictools
[![ShellWard on getagentictools](https://getagentictools.com/badge/mcp/jnmetacode-shellward.svg)](https://getagentictools.com/mcp/jnmetacode-shellward?ref=badge)