Skip to content
@arcjet

Arcjet

The AI agent runtime security platform
Arcjet Logo

Arcjet

Arcjet is the AI agent runtime security platform. Discover the agents running in your organization, enforce policy across every action, prompt, and tool call, and keep the evidence to prove what happened. Detect prompt injection, authorize agent tool calls, redact PII, and block bots and abuse.

Arcjet protects several entry points:

  • Coding agents - apply policies and enforce security controls directly within the development environment. Protect prompts from injection, redact sensitive data, and ensure that agent actions comply with organizational policies. Supported coding agents include: Claude Code and GitHub Copilot.
  • Custom agents - tool calls, queue consumers, agentic pipelines, and anywhere else you process untrusted input in custom agents you've built and deployed yourself. Protect HTTP requests from bots and abuse, and enforce security policies consistently across all agent interactions. Supported AI agent frameworks include: Claude Agent SDK, Claude Managed Agents, CrewAI, Genkit, Google ADK, LangChain, LangGraph, Mastra, OpenAI Agents, Strands Agents, TanStack AI, Vercel AI SDK, Vercel Eve.
  • Web applications - protect HTTP routes, API endpoints, and middleware within web applications. Bot protection, email validation, WAF, and other security building blocks applied directly in-code. Supported languages and frameworks include: Astro, Bun, Deno, Fastify, NestJS, Next.js, Node.js, Express, Hono, Nuxt, Python, FastAPI, Flask, React Router, Remix, SvelteKit, Go.

Getting started

Built for teams shipping AI features and agents that access data, call tools, or take actions in production.

  1. Sign up for an account at arcjet.com or use agent registration.
  2. Follow the quick start for your platform.

Support

Join our Discord server or email support@arcjet.com

Pinned Loading

  1. arcjet-js arcjet-js Public

    Runtime security for AI apps and agents: prompt injection detection, tool-call authorization, sensitive-data redaction, bot protection, and rate limiting. Drop it into your JS/TS code.

    TypeScript 684 32

  2. arcjet-py arcjet-py Public

    Runtime security for AI apps and agents: prompt injection detection, tool-call authorization, sensitive-data redaction, bot protection, and rate limiting. Drop it into your Python code.

    Python 32 2

  3. example-nextjs example-nextjs Public template

    An example Next.js application protected by Arcjet.

    TypeScript 58 10

  4. arcjet-docs arcjet-docs Public

    Arcjet's documentation.

    MDX 16 8

  5. gravity gravity Public

    Gravity is a host generator for WebAssembly Components. It currently targets Wazero, a zero dependency WebAssembly runtime for Go.

    Rust 94 7

  6. well-known-bots well-known-bots Public

    List of well-known bots and user-agent patterns to detect them

    TypeScript 80 3

Repositories

Showing 10 of 56 repositories

Top languages

Loading…