Pipelock
Security harness that wraps MCP servers as stdio proxies with credential exfiltration prevention, DLP pattern matching, and SSRF p
Pipelock is a security proxy that wraps MCP servers, scanning bidirectional traffic for threats. It prevents credential exfiltration through a configurable fetch proxy with SSRF protection, detects prompt injection in both client requests and server responses, and monitors tool list changes for tampering. Features include a 9-layer URL scanning pipeline, file integrity monitoring with SHA256 manifests, Ed25519 signing for multi-agent verification, and three configurable security modes (strict, balanced, audit).
Source
Repository: https://github.com/luckypipewrench/pipelock
Maintain Pipelock?
Let people know it's listed here — add the badge (live metrics, light/dark aware) or a plain link to your README or docs.
[](https://getagentictools.com/mcp/luckypipewrench-pipelock?ref=badge)