No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by ax128 · MCP Server · ★ 67
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is AegisGate safe to install? View the security audit →
AegisGate English | 中文 Open-source security gateway for LLM API calls — sits between your AI agents/apps and upstream LLM providers, enforcing security policies on both request and response sides. What is AegisGate? AegisGate is a self-hosted, pipeline-based security proxy designed to protect LLM API traffic. Point your application's at the gateway, and it automatically applies PII redaction, prompt injection detection, dangerous command blocking, and output sanitization before forwarding to the real upstream model. Key Features Prompt Injection Protection — Multi-layer detection: regex patterns, optional semantic review (gray-zone gated: + + ), Unicode/encoding attack detection, typoglycemia defense PII / Secret Redaction — 50+ pattern categories covering API keys, tokens, credit cards, SSNs, crypto wallet addresses/seed phrases, medical records, and infrastructure identifiers Dangerous Response Sanitization — Automatic obfuscation of high-risk LLM outputs (shell commands, SQL injection payloads, HTTP smuggling) with configurable security levels (low/medium/high) OpenAI-Compatible + Anthropic Messages API — Drop-in routes for , , , and the generic proxy; works with...
| Stars | 67 |
| Forks | 10 |
| Language | Python |
| Category | MCP Server |
| License | MIT |
| Quality Score | 68.6824829209068/100 |
| Last Updated | 2026-09-14 |
| Created | 2026-02-25 |
| Platforms | claude-code, codex, mcp, python |
| Est. Tokens | ~21k |
Looking for a AegisGate alternative? If you're comparing AegisGate with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.
Free LLM gateway: 22 LLM providers, 178 enabled chat routes, 431 cataloged chat models; keyless start when ava
Google Analytics 4 data to AI agents, agentic workflows, and MCP clients. Give agents analysis-ready access to
Governance gateway for AI agents — bounded, auditable, session-aware control with MCP proxy, shell proxy & HTT
Drive the Unity Editor from an AI agent or the terminal. The Editor serves MCP itself over HTTP, so there is n
Unified LLM gateway with weighted load balancing, observability & cost tracking. 统一的 LLM 网关,提供权重负载均衡、可观测性与费用追踪
Stop re-explaining yourself to AI. MARM offers persistent memory, cross-agent context sharing, write queues, s
Explore other popular mcp server tools:
AegisGate is Open-source security gateway for LLM APIs — prompt injection detection, PII redaction, dangerous response sanitization, and audit logging. OpenAI/Claude compatible, MCP & Agent SKILL support. Drop-i. It is categorized as a MCP Server with 67 GitHub stars.
AegisGate is primarily written in Python. It covers topics such as ai-agent, ai-gateway, api-security.
You can find installation instructions and usage details in the AegisGate GitHub repository at github.com/ax128/AegisGate. The project has 67 stars and 10 forks, indicating an active community.
AegisGate is released under the MIT license, making it free to use and modify according to the license terms.
The top alternatives to AegisGate on Agent Skills Hub include freellmpool, google-analytics-mcp, deterministic-agent-control-protocol. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: