The AI guardrail that blocks PII and prompt injection before they reach your LLM

Bidirectional guardrail between your application and any LLM. EU-sovereign. We can't leak what we don't store.

The problem

Every prompt you send to an LLM provider is a potential data-protection incident waiting to happen.

Personal data leaves your infrastructure

Every prompt your users type — including any name, email, or ID number they paste in — travels to your LLM provider's servers. Most teams have no filter in place before that happens.

Prompt injection is hard to catch by hand

Attackers hide instructions inside normal-looking input, trying to override your system prompt or extract data your model shouldn't reveal. Catching every variant yourself is a losing game.

No visibility into what actually left

Without a guardrail, you find out about a leak from a customer complaint or a data-protection inquiry — not from your own logs, because there's nothing recording what was sent.

How it works

Your app sends prompts to Guarrix instead of directly to the LLM. The guardrail validates both directions before anything moves.

1

EU sovereignty

Dutch jurisdiction, no US parent, no CLOUD Act exposure.

2

Bidirectional

Every prompt and every response is validated before it moves.

3

RAM only

Content is processed in memory and discarded. Never logged, never cached.

What's included

Everything you need to run a guardrail in production, not just a demo.

Custom rules per tenant

Define your own regex or keyword patterns, choose redact, mask, or block, and scope each rule to inbound, outbound, or both.

Metadata-only audit log

Every request is logged — token counts, detected entity types, action taken, latency — without ever storing the prompt or response content itself.

Works with any LLM provider

OpenAI, Anthropic, Mistral, or any OpenAI-compatible endpoint. Switch providers without changing your detection rules.

One dashboard for every tenant

Manage entities, custom rules, API keys, and billing for every tenant from a single place.

Try the guardrail

Paste text. We detect PII and return an anonymised result. No signup, no storage.

Try the guardrail

Paste text. We detect PII and return an anonymised result. No signup, no storage.

Guarrix vs. the alternatives

Where Guarrix fits compared to other ways to protect LLM traffic.

AlternativeWhere Guarrix differs
AWS Bedrock GuardrailsAWS lock-in, US jurisdiction, enterprise pricing, inbound checks only — Guarrix is EU-jurisdiction, bidirectional, and provider-agnostic.
Protecto / NightfallUS companies with CLOUD Act exposure — Guarrix is a Dutch company operating entirely under EU law.
LiteLLM (open source)Requires self-hosting and setup, no managed service, no dashboard, no outbound scanning — Guarrix is a managed service covering both directions out of the box.
Anonify.nlDocument redaction only, not a full AI gateway — Guarrix sits in front of your LLM calls end-to-end.

Common questions

A few quick answers — see the full FAQ for more.

FAQ

Ready to protect your LLM traffic?

Start free — no credit card required.

Get started
Guarrix — AI without the risk | Guarrix