Pipelock detects and enforces. The ecosystem around it proves the system works. Three components that turn security claims into evidence.

Pipelock ecosystem flywheel: Validate, Govern, Attest

Validate

151 adversarial test cases prove the scanner catches what it claims. See results.

Govern

Signed rule bundles with hot-reload. Write patterns or use the official set.

Attest

Signed security reports with compliance evidence mapped to five frameworks.

Validate

Agent Egress Bench

151 adversarial test cases across 17 categories: DLP evasion, prompt injection, SSRF, tool poisoning, encoding chains, hostname exfiltration, and A2A scanning. Run against any proxy to measure what gets caught and what gets through. The same corpus Pipelock tests itself against. View Gauntlet results.

Govern

Pipelock Rules

Community detection patterns distributed as signed YAML bundles. Hot-reloadable without restart. Ed25519 signature verification prevents tampered rules from loading. Write your own patterns or use the official bundle.

Attest

Pipelock Assess

pipelock assess generates signed security reports with compliance evidence mapped to OWASP MCP Top 10, Agentic Top 10, MITRE ATLAS, EU AI Act, and SOC 2. Ed25519 signatures make reports tamper-evident. View a demo report.

The bench validates detections. Rules govern what to look for. Assess proves they're closed. Each component feeds the next.

Back to Pipelock Gauntlet Results