Skip to content
Back to the index

bulwark-mcp

PyPIInfrastructure

PulseGate's liveness check found it on 13 Sep 2026; it is registered on GitHub and PyPI and has been in the index since 29 Jun 2026. How this is checked

bulwark-mcp is an open-source command-line firewall designed for MCP servers to catch and prevent indirect prompt injection attacks before they reach AI agents. It provides audit logging and integrates with Model Context Protocol, making it ideal for AI infrastructure security.

Inferred · not functionally tested

Open SourceAGPL-3.0CLISelf-hosted
Visit PyPI
1star
3forks
5features
2026since

Overview

5 features

Purpose: Protecting AI agent servers from indirect prompt injection attacks via a firewall for MCP servers.

Inferred · not functionally tested

Audience: AI infrastructure engineers and security teams

Inferred · not functionally tested

Functions: monitoring

Inferred · not functionally tested

Interfaces: API: unknown · MCP: indicated (inferred, not tested) · CLI: indicated (inferred, not tested) · Self-hosting: indicated (inferred, not tested)

Recorded constraints: pricing: open_source · license: AGPL-3.0 · platforms: CLI · deployment: cli, self_hosted

Constraint provenance is unknown; confirm requirements with the publisher.

Record sources: pypi.org · github.com. These links do not verify the individual claims.

bulwark-mcp is an AI & LLM security project. Inferred · not functionally tested: It focuses on protecting AI agent servers from indirect prompt injection attacks via a firewall for MCP servers. Inferred · not functionally tested: bulwark-mcp is an open-source project aimed at AI infrastructure engineers and security teams. Basis unknown · not verified: The project is open source (AGPL-3.0). Basis unknown · not verified: It ships for the command line, and it can be self-hosted.

It is developed by churik5, and it first shipped in 2026. Development happens publicly on GitHub with 82 commits in the last 90 days. Inferred · not functionally tested: Among its 5 catalogued features are prompt injection protection, audit logging, and MCP server support. Basis unknown · not verified: Catalogued interfaces include an MCP server.

Summary written by a language model from the project’s public pages.

Tasks: Inferred · not functionally tested

  • Prompt injection protection
  • Audit logging
  • MCP server support
  • Open-source firewall
  • AI agent security

Topics: Inferred · not functionally tested

Tags
prompt-injectionmcp-firewallai-security
AI capabilities
Weights: Open

JSON profile · Text profile · Access guide

Built with & integrations

Connectors
MCP
Runs on
CLISelf-hosted

Trust & compliance

License
AGPL-3.0
Public signals
HTTPSOpen SourceFree tierGitHub · ★ 1Active maintenance

Indexing history

What PulseGate has recorded for this listing

Nothing recorded for this listing in this window.

Frequently asked questions about bulwark-mcp

What does bulwark-mcp do?
Inferred · not functionally tested: Bulwark-mcp focuses on protecting AI agent servers from indirect prompt injection attacks via a firewall for MCP servers. It is catalogued under AI & LLM security on PulseGate.
Who is bulwark-mcp for?
Inferred · not functionally tested: bulwark-mcp is an open-source project built for AI infrastructure engineers and security teams.
Does bulwark-mcp have a free plan?
Basis unknown · not verified: Yes — bulwark-mcp is open source under the AGPL-3.0 license and free to use.
What platforms does bulwark-mcp run on?
Basis unknown · not verified: bulwark-mcp runs on the command line. It can also be self-hosted.
Is bulwark-mcp still active?
PulseGate's liveness check found it on 13 Sep 2026. Its GitHub repository shows 82 commits in the last 90 days.
What projects are similar to bulwark-mcp?
Similar projects tracked by PulseGate include agent-prompt-injection-firewall-mcp, MCP Output Firewall, and mcp-safeguard.agent-prompt-injection-firewall-mcpMCP Output Firewallmcp-safeguard
Who makes bulwark-mcp?
bulwark-mcp is developed by churik5.
When did bulwark-mcp launch?
bulwark-mcp first shipped in 2026.

Similar projects

Closest matches by what these projects do