PromptSonar – Static analysis for LLM prompt security
Static scanner catches prompt injections in code before runtime, unlike runtime guards.

Another guardrail API competing with Lakera, but claims sub-30ms latency.
AI Application Developers
Lakera Guard · PromptArmor · Rebuff
Static scanner catches prompt injections in code before runtime, unlike runtime guards.
Zero-code LLM firewall; heuristics under 1ms, optional Groq semantic layer.
LLM-specific threat detection (prompt injection, jailbreaks, exfiltration) that WAFs completely miss.
One-line SDK swap + PR red-teaming with A-F grades—but 'detect-and-block' gateway category is well-funded.
Dynamic LLM sandbox analysis detects injections that static pattern matching tools miss.
Runs fully in the browser for regex-based redaction of structured PII (emails, cards, phones, API keys, IPs, SSNs) and offers an optional Claude step to catch names/addresses patterns miss. Clear placeholders like [NAME] and a privacy toggle make it practical for quick, manual workflows, and I like the Norwegian NIN/phone support. It's useful and thoughtfully privacy-first but not novel — the real win would be integrations (batch processing, editor/extension) or independent accuracy metrics for the AI step.