Skip to main content

Guardion - AI Firewall SDK

Guardion is a lightning-fast, context-aware AI Firewall SDK, built to protect LLM-based systems from prompt injection and misuse. Seamlessly integrates with leading agent frameworks.

In the background, Guardion uses a robust Prompt Defense System developed by the GuardionAI research team. Our production-grade detection engine, ModernGuard, continuously evaluates threats using a multilayered architecture of classifiers, heuristics, and decoding pipelines.

Tested and proven in production by major financial institutions.

🔬 Benchmarks

Detection Performance

Multilingual prompt injection evaluation for finance and e-commerce domains.

Model Overall F1-Score
guardion/Modern-Guard-v1 0.9718
Lakera Guard 0.8600
protectai/deberta-v3-base-prompt-injection-v2 0.6008
deepset/deberta-v3-base-injection 0.5725
meta-llama/Prompt-Guard-2-86M 0.4555
jackhhao/jailbreak-classifier 0.5000

Notes

Tested on a multilingual, multi-attack dataset of 50K prompts with 40+ attack classes in 8 languages.

Evaluation data was built using real-world red team data from partners and the latest jailbreak and attack methods, including: encoding, prompt injection, jailbreaking, exfiltration & leakage, evasion & obfuscation, code and command injection, hard negatives (safe content), regular documents (safe content), regular chats (safe content), and more. See more details here.

Features

✅ Plug-and-play SDK for popular agent and LLM frameworks

🛡️ Real-time prompt inspection

🔍 Customizable detectors and security policies

🚀 Optimized for low latency and high throughput

How to use?

First, get an API Key at GuardionAI Console.

And store at the env var GUARDIONAI_API_KEY.

export GUARDIONAI_API_KEY=your-api-key

OpenAI Agents SDK

You need to install our SDK using our openai-agents extras with the following command:

pip install guardion[openai_agents]
from agents import Agent, Runner, InputGuardrailTripwireTriggered
from guardionsdk.openai_agents import guardion_guardrail

agent = Agent(
    name="Secure AI Assistant",
    instructions="You are a helpful and safe assistant.",
    input_guardrails=[guardion_guardrail],
)

And use it as shown in the file examples/openai_agents.sdk.

LangChain

We support Chat and simple LLM models from LangChain, in order to use it, you need to install our langchain extra.

pip install guardion[langchain]
from langchain_openai import ChatOpenAI
from guardionsdk.langchain import get_guarded_chat_llm
from guardionsdk.exceptions import InjectionDetectedError

GuardionOpenAI = get_guarded_chat_llm(
    ChatOpenAI
)
llm_guardion = GuardionOpenAI(model="gpt-4o-mini")

And in order to use it, just checkout our examples/langhchain.py file.

Release files for guardion 0.1.3

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for guardion 0.1.3
File Size Uploaded
guardion-0.1.3.tar.gz 4.2 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for guardion 0.1.3
File Interpreter ABI Platform
guardion-0.1.3-py3-none-any.whl Python 3 none any Details

Total release size: 10.0 kB

Release files / guardion-0.1.3.tar.gz

Download URL guardion-0.1.3.tar.gz
Size 4.2 kB
Tags Source
SHA-256 checksum
How to use checksums
35a62d690cb00e57236b812b32889bd6b0e846a96b9ece050f9418d8fbdf30b6
BLAKE2b-256 checksum
How to use checksums
69ce80a059533076f55bcd81998200d19d464922bd9a357ae980b97c6f415b60
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.12.9

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on May 8, 2025.

Transparency log

Release files / guardion-0.1.3-py3-none-any.whl

Download URL guardion-0.1.3-py3-none-any.whl
Size 5.7 kB
Tags Python 3
SHA-256 checksum
How to use checksums
edaeeebcbde7edd55e5f3019caf7a1eb18978512895ca3875081b571a1f54b90
BLAKE2b-256 checksum
How to use checksums
648774521b4b7d2966967d63761e68bb5c4a8243750829ef77572f69c0a4a6ed
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.12.9

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on May 8, 2025.

Transparency log

Release history Release notifications | RSS feed

This release

0.1.3 This release

2 release files

0.1.2

2 release files

0.1.1

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page