Available worldwide · Popular in: US
What is Rebuff?
A framework that protects AI systems from prompt injection attacks through four defense mechanisms: input heuristics, LLM-based analysis, vector database pattern recognition, and canary token detection. Currently in alpha/prototype stage.
Rebuff pricing
We don't have Rebuff's full plan breakdown yet (its pricing page resisted automated reading). Here's what we could confirm. Always check live pricing for exact numbers.
Free tier available; credit-based usage pricing for scale
What Rebuff does
The capabilities that matter for ai guardrails, normalised so it lines up with every alternative. “-” means we haven't confirmed it, not that it's missing.
- Architecture model
- Managed cloud inline proxy
- Prompt injection and jailbreak blocking
- ✓
- Inbound pii and credit card masking redaction
- -
- Outbound toxicity and competitor mention blocking
- -
- Hallucination and topical off brand drift detection
- -
- Sub 50ms latency guarantees for proxy routing
- -
- Custom regex and deterministic denylist rulesets
- ✓
- Streaming token interception and chunked eval
- -
- Rag retrieval chunk poisoning defense
- -
- Zero data retention and prompt privacy guarantees
- ✗
- SOC2 type ii
- -
- ISO 27001
- -
- Pricing model
- -
Platform & deployment
Independently observed- CLI
- Web
- Cloud / SaaS
Integrations (3)
Independently observed- OpenAI
- Supabase
- Pinecone
Security & compliance
Known vulnerabilities: 0 (0 in the last 12 months) sourcea count reflects scale & disclosure, not quality
Rebuff alternatives
Other ai guardrails we track, ranked by the same independent score.
- Enkrypt AISecurity and compliance platform that automatically detects and blocks threats in AI agents while generating audit-ready evidencemedium · 55%
- Arthur ShieldPlatform for discovering, monitoring, and controlling AI applications at organizational scalemedium · 56%
- NVIDIA NeMo Guardrailslow · 34%
- HiddenLayerComprehensive platform that discovers, tests, and protects machine learning models throughout their lifecycle from supply chain risks and runtime attacks.low · 21%
- Llama Guardlow · 27%
- Lakera GuardAI security platform that detects and blocks threats to large language model applications in real-timemedium · 55%
Compare Rebuff
Side by side against other ai guardrails, attribute by attribute, with a source on every value.
The Vioscale score: one lens on the evidence
Not user reviews and not a paid placement: a confidence-weighted blend of the independent signals below (adoption, activity, security posture, and more), which you can sort and re-weight yourself. Vendors can correct their listing but can never move their rank, and stars are weighted low as a vanity metric. It is one way to read the evidence for Rebuff, not the verdict.
| Signal | Score | Weight | Contribution | Evidence |
|---|---|---|---|---|
| Price level | 80 | 0.05 | 4.2 | ✓ |
| Capabilities | 46 | 0.08 | 3.8 | ✓ |
| Pricing transparency | 25 | 0.08 | 2.1 | ✓ |
| Stars | 60 | 0.03 | 1.6 | ✓ |
| Integrations | 17 | 0.09 | 1.6 | ✓ |
| Dependent projects | 5 | 0.06 | 0.3 | ✓ |
| Reliability | 0 | 0.07 | 0.0 | - |
| Development activity | 0 | 0.09 | 0.0 | ✓ |
| Release cadence | 0 | 0.05 | 0.0 | - |
| Security posture | 0 | 0.07 | 0.0 | - |
| Package downloads | 0 | 0.14 | 0.0 | - |
| Security score | 0 | 0.04 | 0.0 | - |
| Developer Q&A activity | 0 | 0.06 | 0.0 | - |
Computed . Re-weight it by intent, or see the full method.
All data & sourcesshow ↓
Every value we hold, with its source, retrieval date, and confidence. This is the evidence behind the score: don't trust it, verify it.
Activity
| Attribute | Value | Evidence |
|---|---|---|
| Commits last 30d | 0 | mediumsource · 2026-08-26 · 65% |
Adoption
Features
| Attribute | Value | Evidence |
|---|---|---|
| Capabilities | Architecture model: managed_cloud_inline_proxy · Prompt injection and jailbreak blocking: Yes · Custom regex and deterministic denylist rulesets: Yes · Zero data retention and prompt privacy guarantees: No | mediumsource · 2026-08-21 · 60% |
Integrations
| Attribute | Value | Evidence |
|---|---|---|
| Count | 3 | mediumsource · 2026-08-21 · 60% |
Language
| Attribute | Value | Evidence |
|---|---|---|
| Primary | TypeScript | highsource · 2026-08-26 · 90% |
License
| Attribute | Value | Evidence |
|---|---|---|
| Spdx | Apache-2.0 | highsource · 2026-08-26 · 95% |
Market
| Attribute | Value | Evidence |
|---|---|---|
| Availability | PrimaryMarkets: … · AvailabilityScope: global · AvailableCountries: … · NotAvailableCountries: … | mediumsource · 2026-08-21 · 50% |
Pricing
Release
| Attribute | Value | Evidence |
|---|---|---|
| History | 3 items | mediumsource · 2026-08-26 · 70% |
Security
| Attribute | Value | Evidence |
|---|---|---|
| Vulnerabilities | Count: 0 · Source: https://advisories.ecosyste.ms/api/v1/advisories?ecosystem=pypi&package_name=rebuff&per_page=100 · Last 12m: 0 | highsource · 2026-08-26 · 90% |