Products

Solutions

Industries

Resources

/

/

Shield

FREE · LOCAL · OPEN SOURCE · APACHE 2.0

Stop destructive tool calls before they reach the tool.

Stop destructive tool calls before they reach the tool.

Stop destructive tool calls before they reach the tool.

Stop destructive tool calls before they reach the tool.

APERION Shield sits between an AI coding agent and the MCP servers it can call. It inspects the request locally and can allow, warn, require approval, or block the operation before a database, repository, filesystem, cloud API, or tool server receives it.

APERION Shield sits between an AI coding agent and the MCP servers it can call. It inspects the request locally and can allow, warn, require approval, or block the operation before a database, repository, filesystem, cloud API, or tool server receives it.

APERION Shield sits between an AI coding agent and the MCP servers it can call. It inspects the request locally and can allow, warn, require approval, or block the operation before a database, repository, filesystem, cloud API, or tool server receives it.

Part of the APERION Trust Fabric

MECHANISM

One local middleman across the MCP lifecycle.

One local middleman across the MCP lifecycle.

One local middleman across the MCP lifecycle.

One local middleman across the MCP lifecycle.

APERION Shield terminal demo blocking an AI agent’s database-drop and recursive-delete tool calls.

RESULT

BLOCK

Shield blocks destructive MCP tool calls before the database, repository, or filesystem receives them.

Shield blocks destructive MCP tool calls before the database, repository, or filesystem receives them.

01

01

WRAP

WRAP

Point the MCP host at Shield. Shield starts or connects to the upstream server and proxies the interaction transparently.

Point the MCP host at Shield. Shield starts or connects to the upstream server and proxies the interaction transparently.

INSPECT

INSPECT

Evaluate each tool call against the installed shieldset, workspace context, prior decisions, burst behavior, and any configured identity gate.

Evaluate each tool call against the installed shieldset, workspace context, prior decisions, burst behavior, and any configured identity gate.

02

02

03

03

DECIDE

DECIDE

Block critical operations, queue high-risk operations for approval, warn on medium-risk calls, and allow low-risk calls.

Block critical operations, queue high-risk operations for approval, warn on medium-risk calls, and allow low-risk calls.

WATCH BOTH DIRECTIONS

WATCH BOTH DIRECTIONS

Pin the tool catalog, scan descriptions and results, and detect changes associated with tool poisoning, prompt injection, or supply-chain compromise.

Pin the tool catalog, scan descriptions and results, and detect changes associated with tool poisoning, prompt injection, or supply-chain compromise.

04

04

LIFECYCLE COVERAGE

Guardrails before, during, and beyond each tool call.

Guardrails before, during, and beyond each tool call.

Guardrails before, during, and beyond each tool call.

Before installation

Before installation

Before installation

Scan an MCP server before trusting it.

Scan an MCP server before trusting it.

At runtime

At runtime

At runtime

Apply local rules to each tool call without a hosted account or telemetry requirement.

Apply local rules to each tool call without a hosted account or telemetry requirement.

At the operating-system boundary

At the operating-system boundary

At the operating-system boundary

Use the supported sandbox controls to constrain the upstream tool process.

Use the supported sandbox controls to constrain the upstream tool process.

Across an enterprise fleet

Across an enterprise fleet

Across an enterprise fleet

Connect the enterprise edition to Smartflow for centrally managed policy, approvals, and audit evidence.

Connect the enterprise edition to Smartflow for centrally managed policy, approvals, and audit evidence.

Free where you build. Governed where you scale.

Free where you build. Governed where you scale.

Free where you build. Governed where you scale.

APERION SHIELD

Local MCP protection, ready now.

Free, local, open source, and designed for individual developers and teams that want immediate MCP protection.

SMARTFLOW SHIELD

The enterprise operating model.

Central policy, governed enrollment, approvals, organization-wide visibility, and integration with the broader runtime evidence chain.

Start local. Prove the pattern. Govern the fleet when you are ready.

Start local. Prove the pattern. Govern the fleet when you are ready.

Start local. Prove the pattern. Govern the fleet when you are ready.