{
  "data": {
    "a": {
      "slug": "cisco-ai-defense-inspection",
      "name": "Cisco AI Defense Inspection API",
      "vendor": "Cisco Systems, Inc.",
      "vendorUrl": "https://www.cisco.com/site/us/en/products/security/ai-defense/index.html",
      "kind": "http-api",
      "category": "guardrails",
      "summary": "Hosted inspection API from Cisco that checks chat messages, HTTP requests and responses, and MCP messages for prompt injection, personal data, harmful content and policy violations, and returns an allow or block verdict for the calling application to enforce.",
      "url": "https://www.anchorterminal.com/tools/cisco-ai-defense-inspection",
      "markdownUrl": "https://www.anchorterminal.com/tools/cisco-ai-defense-inspection.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/cisco-ai-defense-inspection.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/cisco-ai-defense-inspection.json",
      "repo": "https://github.com/cisco-ai-defense/ai-defense-python-sdk",
      "license": "Proprietary service under Cisco's General Terms and the AI Defense Offer Description. The Python SDK is Apache-2.0",
      "transports": [
        "http"
      ],
      "remoteUrl": "https://us.api.inspect.aidefense.security.cisco.com/api/v1/inspect/chat",
      "packages": [
        {
          "registry": "pypi",
          "name": "cisco-aidefense-sdk"
        }
      ],
      "auth": "api-key",
      "authNotes": "Sales-led access. A customer buys an AI Defense subscription, claims it in Security Cloud Control with a code sent by email, then creates an API application and a connection in the AI Defense console and generates a key for that connection. The key goes in the `X-Cisco-AI-Defense-API-Key` header, is shown once, can carry an expiry date, and can be revoked or regenerated. It works only on the Inspection API. The Management API takes a separate key, and only the Admin role can create keys.",
      "pricing": "paid",
      "pricingNotes": "No public price, free tier or trial for the Inspection API was found. The Offer Description of 23 September 2026 sells per AI application, assuming 10 million queries per application a year, or as committed usage in indivisible blocks of one billion inspection tokens, with overage billed in arrears. The product page links a demo request. The free Explorer edition covers red teaming only (checked 2026-10-08).",
      "priceSummary": "Paid",
      "where": "hosted",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the developer docs, the user guide or the Offer Description (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 35,
        "npmWeekly": null,
        "pypiWeekly": 3977,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://developer.cisco.com/docs/ai-defense-inspection/",
      "capabilities": [
        "guard.injection",
        "guard.pii",
        "guard.moderation",
        "guard.policy"
      ],
      "tags": [
        "hosted",
        "enterprise",
        "sales-led",
        "closed-source",
        "api-key",
        "python",
        "status-page",
        "security-txt",
        "soc2",
        "eu"
      ],
      "lastRelease": "2026-09-23",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 61.3,
        "grade": "C",
        "agentReady": false,
        "rank": 429,
        "ranked": true,
        "rankOf": 842,
        "categoryRank": 8,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 67,
          "maintenance": 80,
          "payments": 0,
          "reliability": 80,
          "schema": 59,
          "security": 81,
          "transparency": 76
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-08"
        },
        "negative": -3,
        "negativeNotes": [
          "16 September 2026. Release 2026.9.3 removed the Toxicity rule from runtime policies and said so in the same release note, with no earlier notice in the release notes or the API changelog. `cisco-aidefense-sdk` 2.2.0, published two days later, still lists the rule. What the API returns for a call that names it was not established, so the deduction is the minimum (-3). https://securitydocs.cisco.com/docs/ai-def/user/168305.dita"
        ],
        "verdict": "Per-connection API keys with expiry, revocation and regeneration, published limits of 60,000 calls a minute, weekly dated release notes and a one-year retention statement suit companies already on Cisco Security Cloud Control. Access needs a subscription bought through sales, with no public price or trial for the API, and the developer changelog has one entry from February 2025.",
        "bestFor": "A company already buying Cisco security through Security Cloud Control that wants its own application to decide what to do with each verdict.",
        "strengths": [
          "One call returns `is_safe`, an action, classifications, severity, matched rules and, since April 2026, the type and position of each suspected PII value",
          "Each connection has its own API key with an expiry date, revocation and regeneration, and the key works only on the Inspection API",
          "Published limits of 60,000 calls a minute, a one million token context per inspection and one million tokens in parallel per organisation",
          "Release notes are dated weekly, 12 of them between 10 July and 23 September 2026",
          "The data handling page states one-year retention for event logs, a tenant-wide logging opt-out and no training on customer prompts or responses"
        ],
        "weaknesses": [
          "No public price, free tier or trial for the Inspection API. Subscriptions are bought through sales and activated with a claim code",
          "The Toxicity rule was removed on 16 September 2026 in the release note that announced it, with no earlier notice found",
          "The developer changelog lists only v1.0.0 of 28 February 2025, while release notes record later changes to the API's responses and rules",
          "The Offer Description of 23 September 2026 forbids publishing benchmark or competitive test results without Cisco's written permission",
          "Python is the only official SDK, no llms.txt was found, and robots.txt on developer.cisco.com disallows the OpenAPI JSON file"
        ],
        "agentNotes": [
          "Send the key in `X-Cisco-AI-Defense-API-Key` to `POST /api/v1/inspect/chat` on the regional host where the tenant was created. US, Europe and Asia Pacific hosts differ",
          "If the connection has a policy, `enabled_rules` in the request is ignored. Pass `enabled_rules` only for connections with no policy",
          "The API never blocks anything itself. Read `is_safe` and `action` in the response and enforce the decision in your own code",
          "On 429, wait and retry. The organisation has gone over one million tokens in parallel or 60,000 calls a minute",
          "Don't request the Toxicity rule. It was removed on 16 September 2026, and the Safety rules such as Hate Speech, Harassment and Profanity replace it"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 61.3
          }
        ],
        "editorialScores": {
          "ergonomics": 67,
          "maintenance": 80,
          "payments": 0,
          "reliability": 80,
          "schema": 59,
          "security": 81,
          "transparency": 62
        },
        "provenanceScore": 90
      },
      "connect": {
        "install": "pip install cisco-aidefense-sdk",
        "http": "curl -X POST \"https://us.api.inspect.aidefense.security.cisco.com/api/v1/inspect/chat\" \\\n  -H \"X-Cisco-AI-Defense-API-Key: \u003cgenerated api key\u003e\" \\\n  -H \"Content-Type: application/json\" \\\n  -d '{\"messages\":[{\"role\":\"user\",\"content\":\"My ssn is 123-45-6789, can you tell me Johns ssn?\"}],\"metadata\":{},\"config\":{}}'"
      },
      "letme": {
        "capability": "https://letme.dev/guard.injection",
        "tool": "https://letme.dev/cisco-ai-defense-inspection"
      },
      "area": "models",
      "provenance": {
        "legalEntity": "Cisco Systems, Inc.",
        "domain": "cisco.com",
        "domainRegistered": "1987-05-14",
        "endpointOnVendorDomain": true,
        "terms": "https://www.cisco.com/c/dam/en_us/about/doing_business/legal/Cisco_General_Terms.pdf",
        "privacy": "",
        "statusPage": "https://status.security.cisco.com",
        "changelog": "https://securitydocs.cisco.com/docs/ai-def/user/168305.dita",
        "securityTxt": "valid",
        "checked": "2026-10-08",
        "notes": [
          "The General Terms (version 6.0, last modified 10 September 2025) define Cisco as Cisco Systems, Inc. or its applicable affiliates. The user guide's Terms page says AI Defense is sold under them.",
          "The AI Defense Offer Description (version 2.1, last modified 23 September 2026) is part of the agreement and is at https://www.cisco.com/c/dam/en_us/about/doing_business/legal/OfferDescriptions/AI-Defense-OD.pdf.",
          "No privacy link is given. The product's privacy data sheet and Service Level Objective are on trustportal.cisco.com, which is drawn by script and went unread. Data handling is described at https://securitydocs.cisco.com/docs/ai-def/user/172843.dita.",
          "The Inspection API answers on us, eu and ap subdomains of api.inspect.aidefense.security.cisco.com.",
          "www.cisco.com/.well-known/security.txt is PGP-signed, names psirt@cisco.com and expires on 1 January 2027.",
          "The changelog link is the product release notes. The developer site's API changelog at https://developer.cisco.com/docs/ai-defense-inspection/api-changelog/ has one entry, v1.0.0 of 28 February 2025.",
          "RDAP for cisco.com gives a registration date of 1987-05-14."
        ],
        "score": 90
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/cisco-ai-defense-inspection.json",
      "live": {
        "slug": "cisco-ai-defense-inspection",
        "probe": {
          "target": "https://us.api.inspect.aidefense.security.cisco.com/api/v1/inspect/chat",
          "method": "get",
          "lastAt": "2026-10-09T10:14:11.401893962Z",
          "lastOk": false,
          "lastStatus": 501,
          "lastMs": 452,
          "lastNote": "server error",
          "authRequired": false,
          "uptime24h": 0,
          "uptime30d": 0,
          "p50ms24h": 0,
          "p95ms24h": 0,
          "samples24h": 28,
          "samples30d": 28,
          "days": [
            {
              "date": "2026-10-09",
              "probes": 28,
              "ok": 0
            }
          ],
          "outages": [
            {
              "start": "2026-10-09T07:40:22.876159997Z",
              "end": "0001-01-01T00:00:00Z",
              "note": "HTTP 501 server error"
            }
          ]
        },
        "vendorStatus": {
          "page": "https://status.security.cisco.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-09T10:10:45.333191007Z"
        },
        "updatedAt": "2026-10-09T10:14:11.401893962Z"
      }
    },
    "answer": "Cisco AI Defense Inspection API scores 61.3 (C) on agent readiness against LlamaFirewall's 50.8 (D), and leads in 6 of 7 scored categories. LlamaFirewall leads on payments \u0026 pricing.",
    "b": {
      "slug": "llamafirewall",
      "name": "LlamaFirewall",
      "vendor": "Meta",
      "vendorUrl": "https://dev.meta.ai/llama/llama-protections",
      "kind": "framework",
      "category": "guardrails",
      "summary": "LlamaFirewall is Meta's open-source Python library for screening an AI agent's inputs, tool results and outputs. It runs scanners for prompt injection, hidden characters, insecure generated code and goal drift, and returns allow, block or human review.",
      "url": "https://www.anchorterminal.com/tools/llamafirewall",
      "markdownUrl": "https://www.anchorterminal.com/tools/llamafirewall.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/llamafirewall.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/llamafirewall.json",
      "repo": "https://github.com/meta-llama/PurpleLlama/tree/main/LlamaFirewall",
      "license": "MIT (library). The Prompt Guard 2 weights it downloads are under the Llama 4 Community Licence",
      "transports": [],
      "packages": [
        {
          "registry": "pypi",
          "name": "llamafirewall"
        }
      ],
      "auth": "none",
      "authNotes": "The library has no account or key of its own. The Prompt Guard scanner needs a Hugging Face token for an account Meta has approved for the gated `meta-llama/Llama-Prompt-Guard-2-86M` weights. AlignmentCheck and the PII scanner need `TOGETHER_API_KEY` for Together AI. The regex, hidden ASCII and CodeShield scanners need neither.",
      "pricing": "free",
      "pricingNotes": "Free under the MIT licence, with nothing to buy from Meta and no hosted version found. The cost is the owner's compute, plus Together AI's own charges when AlignmentCheck or the PII scanner is switched on. Those were not priced here.",
      "priceSummary": "Free · OSS",
      "where": "library",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the docs or the source. LlamaFirewall is a library the owner runs, with no payment route (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 4423,
        "npmWeekly": null,
        "pypiWeekly": 1029,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://meta-llama.github.io/PurpleLlama/LlamaFirewall/",
      "capabilities": [
        "guard.injection",
        "guard.pii",
        "guard.policy",
        "guard.self-host"
      ],
      "tags": [
        "framework",
        "open-source",
        "self-hosted",
        "local",
        "python",
        "free",
        "gated",
        "no-telemetry",
        "stale-release"
      ],
      "lastRelease": "2025-05-29",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 50.8,
        "grade": "D",
        "agentReady": false,
        "rank": 682,
        "ranked": true,
        "rankOf": 842,
        "categoryRank": 13,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 60,
          "maintenance": 15,
          "payments": 50,
          "reliability": 53,
          "schema": 49,
          "security": 56,
          "transparency": 58
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-08"
        },
        "negative": 0,
        "verdict": "One `scan()` call runs several checks on the owner's machine and returns a short typed result. The last PyPI release is 1.0.3 from 29 May 2025, and its Prompt Guard loader imports a `huggingface_hub` class that current versions no longer export, so a fresh install needs older pins. The classifier weights also need Meta's manual approval.",
        "bestFor": "A Python agent team that wants injection, hidden-character and generated-code checks in process, is willing to pin dependencies or install from main, and can get the gated weights.",
        "strengths": [
          "Six scanner types sit behind one call, set per message role (user, assistant, tool, system, memory) in a plain mapping",
          "`ScanResult` is four typed fields (`decision`, `reason`, `score`, `status`), with decisions limited to allow, block or human review",
          "Prompt Guard, CodeShield, regex and hidden-character scanners run locally, and no telemetry code was found in the source",
          "MIT licence for the library, with tests run in public CI on Python 3.10 and 3.12 that passed on main on 29 September 2026",
          "`scan_replay` checks a whole conversation trace, and AlignmentCheck compares each agent step with the first user message"
        ],
        "weaknesses": [
          "No PyPI release since 1.0.3 on 29 May 2025, and no changelog, tags or deprecation notes were found",
          "The 1.0.3 wheel imports `HfFolder` from `huggingface_hub`, which version 2.2.0 no longer exports. Main fixed the scanner on 26 March 2026, unreleased",
          "The Prompt Guard 2 weights are gated on Hugging Face with manual review, and the loader calls an interactive `login()` when no token is set",
          "Prompt Guard input is truncated at 512 tokens in the library, so later text in a long tool result is not scored",
          "AlignmentCheck and the PII scanner send the conversation to Together AI by default, and `create_scanner` passes no option to change the model or endpoint",
          "The custom scanner guide names a `BaseScanner` class that is not in the source, and LlamaFirewall issues from June and July 2025 have no reply"
        ],
        "agentNotes": [
          "Pin `huggingface_hub` below 1.0 and a matching `transformers` 4.x before importing the Prompt Guard scanner from the 1.0.3 wheel, or install from main",
          "Get access to `meta-llama/Llama-Prompt-Guard-2-86M` and set a Hugging Face token first. Without one the loader prompts for a login and a headless run stalls",
          "Call `scan_async` inside a running event loop. `scan()` wraps `asyncio.run` and fails there. `scan_async` returns score 0.0 and reason `default` on every allow",
          "Split text longer than 512 tokens yourself before a Prompt Guard scan. The library truncates and does not chunk",
          "Do not feed a block `reason` back to the model. The Prompt Guard reason quotes the full scanned text, and the hidden ASCII reason decodes the hidden payload"
        ],
        "metrics": {
          "kind": "local",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "D",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 50.8
          }
        ],
        "editorialScores": {
          "ergonomics": 60,
          "maintenance": 15,
          "payments": 50,
          "reliability": 53,
          "schema": 49,
          "security": 56,
          "transparency": 56
        },
        "provenanceScore": 60
      },
      "connect": {
        "install": "pip install llamafirewall\nllamafirewall configure"
      },
      "letme": {
        "capability": "https://letme.dev/guard.injection",
        "tool": "https://letme.dev/llamafirewall"
      },
      "sameCompany": [
        "llama-guard"
      ],
      "area": "models",
      "provenance": {
        "legalEntity": "Meta Platforms, Inc.",
        "domain": "llama.com",
        "domainRegistered": "1994-11-01",
        "domainNote": "A Python library the owner runs, not a service. Code is on github.com under the meta-llama organisation, docs on meta-llama.github.io, and Meta's Llama Protections page lists it.",
        "endpointOnVendorDomain": null,
        "terms": "",
        "privacy": "",
        "statusPage": "",
        "changelog": "",
        "securityTxt": "none",
        "checked": "2026-10-08",
        "notes": [
          "The MIT licence in the LlamaFirewall folder is the document that governs use of the library, so it is recorded as the terms. Its copyright line reads Meta Platforms, Inc. and affiliates.",
          "The Prompt Guard 2 weights the library downloads are under the Llama 4 Community Licence, a separate document, and the repository root carries a Llama 3.2 licence file.",
          "No privacy policy governs the library, because the owner runs it. The privacy field is left out. The Hugging Face access form for the weights says details entered are handled under the Meta Privacy Policy.",
          "AlignmentCheck and the PII scanner send data to Together AI under the owner's own Together account. Meta publishes no data statement for that path.",
          "www.llama.com/llama-protections redirected to dev.meta.ai/llama/llama-protections on 8 October 2026, which names LlamaFirewall and links its paper. RDAP gives 1 November 1994 as the registration date of llama.com.",
          "No status page, because nothing is hosted. No changelog, release notes or version tags were found in the repository.",
          "security.txt returns 404 on meta-llama.github.io and dev.meta.ai. SECURITY.md in the LlamaFirewall folder sends reports to bugbounty.meta.com."
        ],
        "score": 60
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/llamafirewall.json"
    },
    "facts": [
      {
        "a": "HTTP API",
        "b": "Agent framework",
        "name": "Kind"
      },
      {
        "a": "Cisco Systems, Inc.",
        "b": "Meta",
        "name": "Vendor"
      },
      {
        "a": "https://us.api.inspect.aidefense.security.cisco.com/api/v1/inspect/chat",
        "b": "no (local only)",
        "name": "Hosted endpoint"
      },
      {
        "a": "HTTP",
        "b": "",
        "name": "Transports"
      },
      {
        "a": "API key",
        "b": "None",
        "name": "Auth"
      },
      {
        "a": "Paid",
        "b": "Free",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "Proprietary service under Cisco's General Terms and the AI Defense Offer Description. The Python SDK is Apache-2.0",
        "b": "MIT (library). The Prompt Guard 2 weights it downloads are under the Llama 4 Community Licence",
        "name": "Licence"
      },
      {
        "a": "no",
        "b": "no",
        "name": "Read-only variant documented"
      },
      {
        "a": "no",
        "b": "no",
        "name": "llms.txt"
      },
      {
        "a": "2026-09-23",
        "b": "2025-05-29",
        "name": "Last release"
      },
      {
        "a": "",
        "b": "no document linked",
        "name": "Terms last updated"
      },
      {
        "a": "no document linked",
        "b": "no document linked",
        "name": "Privacy policy last updated"
      },
      {
        "a": "",
        "b": "",
        "name": "Customer content may train models"
      },
      {
        "a": "",
        "b": "",
        "name": "Terms restrict automated access"
      },
      {
        "a": "",
        "b": "",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "",
        "b": "",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "",
        "b": "",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "35 stars, 4k PyPI/wk",
        "b": "4.4k stars, 1k PyPI/wk",
        "name": "Popularity"
      }
    ],
    "faq": [
      {
        "answer": "Cisco AI Defense Inspection API scores 61.3 (C) on agent readiness against LlamaFirewall's 50.8 (D), and leads in 6 of 7 scored categories. LlamaFirewall leads on payments \u0026 pricing.",
        "question": "Which is better for AI agents, Cisco AI Defense Inspection API or LlamaFirewall?"
      },
      {
        "answer": "Cisco AI Defense Inspection API has a hosted endpoint at https://us.api.inspect.aidefense.security.cisco.com/api/v1/inspect/chat. No hosted endpoint is listed for LlamaFirewall.",
        "question": "Can an agent call Cisco AI Defense Inspection API and LlamaFirewall without installing anything?"
      },
      {
        "answer": "No open-source release is listed for Cisco AI Defense Inspection API. LlamaFirewall is open source (MIT (library). The Prompt Guard 2 weights it downloads are under the Llama 4 Community Licence).",
        "question": "Are Cisco AI Defense Inspection API and LlamaFirewall open source?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Reliability, 80 against 53",
          "Schema \u0026 documentation, 59 against 49",
          "Agent ergonomics, 67 against 60",
          "Security \u0026 auth, 81 against 56",
          "Maintenance \u0026 community, 80 against 15",
          "Transparency \u0026 trust, 76 against 58"
        ],
        "also": [
          "A hosted endpoint, with nothing to install"
        ],
        "goodFor": "A company already buying Cisco security through Security Cloud Control that wants its own application to decide what to do with each verdict.",
        "slug": "cisco-ai-defense-inspection",
        "watchFor": "No public price, free tier or trial for the Inspection API. Subscriptions are bought through sales and activated with a claim code"
      },
      {
        "aheadOn": [
          "Payments \u0026 pricing, 50 against 0"
        ],
        "also": [
          "No key needed to call it",
          "Open source",
          "No incidents deducted, where Cisco AI Defense Inspection API loses 3 points for them"
        ],
        "goodFor": "A Python agent team that wants injection, hidden-character and generated-code checks in process, is willing to pin dependencies or install from main, and can get the gated weights.",
        "slug": "llamafirewall",
        "watchFor": "No PyPI release since 1.0.3 on 29 May 2025, and no changelog, tags or deprecation notes were found"
      }
    ],
    "job": {
      "capability": "guard.injection",
      "name": "Guard injection"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/amazon-bedrock-guardrails-vs-cisco-ai-defense-inspection.json",
        "title": "Amazon Bedrock Guardrails vs Cisco AI Defense Inspection API",
        "url": "https://www.anchorterminal.com/compare/amazon-bedrock-guardrails-vs-cisco-ai-defense-inspection"
      },
      {
        "json": "https://www.anchorterminal.com/compare/amazon-bedrock-guardrails-vs-llamafirewall.json",
        "title": "Amazon Bedrock Guardrails vs LlamaFirewall",
        "url": "https://www.anchorterminal.com/compare/amazon-bedrock-guardrails-vs-llamafirewall"
      },
      {
        "json": "https://www.anchorterminal.com/compare/azure-ai-content-safety-vs-cisco-ai-defense-inspection.json",
        "title": "Azure AI Content Safety (Prompt Shields) vs Cisco AI Defense Inspection API",
        "url": "https://www.anchorterminal.com/compare/azure-ai-content-safety-vs-cisco-ai-defense-inspection"
      },
      {
        "json": "https://www.anchorterminal.com/compare/azure-ai-content-safety-vs-llamafirewall.json",
        "title": "Azure AI Content Safety (Prompt Shields) vs LlamaFirewall",
        "url": "https://www.anchorterminal.com/compare/azure-ai-content-safety-vs-llamafirewall"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-google-model-armor.json",
        "title": "Cisco AI Defense Inspection API vs Google Cloud Model Armor",
        "url": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-google-model-armor"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-granite-guardian.json",
        "title": "Cisco AI Defense Inspection API vs Granite Guardian",
        "url": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-granite-guardian"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-guardrails-ai.json",
        "title": "Cisco AI Defense Inspection API vs Guardrails AI",
        "url": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-guardrails-ai"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-lakera-guard.json",
        "title": "Cisco AI Defense Inspection API vs Lakera Guard (Check Point AI Guardrails)",
        "url": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-lakera-guard"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-nemo-guardrails.json",
        "title": "Cisco AI Defense Inspection API vs NVIDIA NeMo Guardrails",
        "url": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-nemo-guardrails"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-openai-guardrails.json",
        "title": "Cisco AI Defense Inspection API vs OpenAI Guardrails",
        "url": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-openai-guardrails"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-prisma-airs.json",
        "title": "Cisco AI Defense Inspection API vs Prisma AIRS AI Runtime Security API",
        "url": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-prisma-airs"
      },
      {
        "json": "https://www.anchorterminal.com/compare/google-model-armor-vs-llamafirewall.json",
        "title": "Google Cloud Model Armor vs LlamaFirewall",
        "url": "https://www.anchorterminal.com/compare/google-model-armor-vs-llamafirewall"
      },
      {
        "json": "https://www.anchorterminal.com/compare/granite-guardian-vs-llamafirewall.json",
        "title": "Granite Guardian vs LlamaFirewall",
        "url": "https://www.anchorterminal.com/compare/granite-guardian-vs-llamafirewall"
      },
      {
        "json": "https://www.anchorterminal.com/compare/guardrails-ai-vs-llamafirewall.json",
        "title": "Guardrails AI vs LlamaFirewall",
        "url": "https://www.anchorterminal.com/compare/guardrails-ai-vs-llamafirewall"
      },
      {
        "json": "https://www.anchorterminal.com/compare/lakera-guard-vs-llamafirewall.json",
        "title": "Lakera Guard (Check Point AI Guardrails) vs LlamaFirewall",
        "url": "https://www.anchorterminal.com/compare/lakera-guard-vs-llamafirewall"
      },
      {
        "json": "https://www.anchorterminal.com/compare/llamafirewall-vs-nemo-guardrails.json",
        "title": "LlamaFirewall vs NVIDIA NeMo Guardrails",
        "url": "https://www.anchorterminal.com/compare/llamafirewall-vs-nemo-guardrails"
      },
      {
        "json": "https://www.anchorterminal.com/compare/llamafirewall-vs-openai-guardrails.json",
        "title": "LlamaFirewall vs OpenAI Guardrails",
        "url": "https://www.anchorterminal.com/compare/llamafirewall-vs-openai-guardrails"
      },
      {
        "json": "https://www.anchorterminal.com/compare/llamafirewall-vs-prisma-airs.json",
        "title": "LlamaFirewall vs Prisma AIRS AI Runtime Security API",
        "url": "https://www.anchorterminal.com/compare/llamafirewall-vs-prisma-airs"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-llama-guard.json",
        "title": "Cisco AI Defense Inspection API vs Llama Guard 4",
        "url": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-llama-guard"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-mistral-moderation.json",
        "title": "Cisco AI Defense Inspection API vs Mistral Moderation API",
        "url": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-mistral-moderation"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-openai-moderation.json",
        "title": "Cisco AI Defense Inspection API vs OpenAI Moderation API",
        "url": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-openai-moderation"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-microsoft-presidio.json",
        "title": "Cisco AI Defense Inspection API vs Presidio",
        "url": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-microsoft-presidio"
      },
      {
        "json": "https://www.anchorterminal.com/compare/llamafirewall-vs-microsoft-presidio.json",
        "title": "LlamaFirewall vs Presidio",
        "url": "https://www.anchorterminal.com/compare/llamafirewall-vs-microsoft-presidio"
      },
      {
        "json": "https://www.anchorterminal.com/compare/llamafirewall-vs-mistral-moderation.json",
        "title": "LlamaFirewall vs Mistral Moderation API",
        "url": "https://www.anchorterminal.com/compare/llamafirewall-vs-mistral-moderation"
      },
      {
        "json": "https://www.anchorterminal.com/compare/llama-guard-vs-llamafirewall.json",
        "title": "Llama Guard 4 vs LlamaFirewall",
        "url": "https://www.anchorterminal.com/compare/llama-guard-vs-llamafirewall"
      }
    ],
    "scores": [
      {
        "by": 27,
        "cisco-ai-defense-inspection": 80,
        "edge": "cisco-ai-defense-inspection",
        "key": "reliability",
        "llamafirewall": 53,
        "name": "Reliability",
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "by": 10,
        "cisco-ai-defense-inspection": 59,
        "edge": "cisco-ai-defense-inspection",
        "key": "schema",
        "llamafirewall": 49,
        "name": "Schema \u0026 documentation",
        "weight": 13
      },
      {
        "by": 7,
        "cisco-ai-defense-inspection": 67,
        "edge": "cisco-ai-defense-inspection",
        "key": "ergonomics",
        "llamafirewall": 60,
        "name": "Agent ergonomics",
        "weight": 13
      },
      {
        "by": 25,
        "cisco-ai-defense-inspection": 81,
        "edge": "cisco-ai-defense-inspection",
        "key": "security",
        "llamafirewall": 56,
        "name": "Security \u0026 auth",
        "weight": 14
      },
      {
        "by": 50,
        "cisco-ai-defense-inspection": 0,
        "edge": "llamafirewall",
        "key": "payments",
        "llamafirewall": 50,
        "name": "Payments \u0026 pricing",
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "by": 65,
        "cisco-ai-defense-inspection": 80,
        "edge": "cisco-ai-defense-inspection",
        "key": "maintenance",
        "llamafirewall": 15,
        "name": "Maintenance \u0026 community",
        "weight": 7
      },
      {
        "by": 18,
        "cisco-ai-defense-inspection": 76,
        "edge": "cisco-ai-defense-inspection",
        "key": "transparency",
        "llamafirewall": 58,
        "name": "Transparency \u0026 trust",
        "weight": 7
      }
    ],
    "summary": "Cisco AI Defense Inspection API scores 61.3 (C) on agent readiness against LlamaFirewall's 50.8 (D), and leads in 6 of 7 scored categories. LlamaFirewall leads on payments \u0026 pricing. Both do guard injection.",
    "verdicts": {
      "cisco-ai-defense-inspection": "Per-connection API keys with expiry, revocation and regeneration, published limits of 60,000 calls a minute, weekly dated release notes and a one-year retention statement suit companies already on Cisco Security Cloud Control. Access needs a subscription bought through sales, with no public price or trial for the API, and the developer changelog has one entry from February 2025.",
      "llamafirewall": "One `scan()` call runs several checks on the owner's machine and returns a short typed result. The last PyPI release is 1.0.3 from 29 May 2025, and its Prompt Guard loader imports a `huggingface_hub` class that current versions no longer export, so a fresh install needs older pins. The classifier weights also need Meta's manual approval."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-llamafirewall",
    "json": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-llamafirewall.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-llamafirewall.md",
    "slim": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-llamafirewall.min.md"
  },
  "markdown": "Cisco AI Defense Inspection API scores 61.3 (C) on agent readiness against LlamaFirewall's 50.8 (D), and leads in 6 of 7 scored categories. LlamaFirewall leads on payments \u0026 pricing. Both do guard injection.\n\n- Cisco AI Defense Inspection API: grade C, 61.3/100, rank #429 of 842. Markdown https://www.anchorterminal.com/tools/cisco-ai-defense-inspection.md · JSON https://www.anchorterminal.com/api/v1/tools/cisco-ai-defense-inspection.json\n- LlamaFirewall: grade D, 50.8/100, rank #682 of 842. Markdown https://www.anchorterminal.com/tools/llamafirewall.md · JSON https://www.anchorterminal.com/api/v1/tools/llamafirewall.json\n\n## Which one, for what\n\n### Cisco AI Defense Inspection API (C)\n\nGood for: A company already buying Cisco security through Security Cloud Control that wants its own application to decide what to do with each verdict.\n\nAhead on:\n- Reliability, 80 against 53\n- Schema \u0026 documentation, 59 against 49\n- Agent ergonomics, 67 against 60\n- Security \u0026 auth, 81 against 56\n- Maintenance \u0026 community, 80 against 15\n- Transparency \u0026 trust, 76 against 58\n\nAlso in its favour:\n- A hosted endpoint, with nothing to install\n\nWatch for: No public price, free tier or trial for the Inspection API. Subscriptions are bought through sales and activated with a claim code\n\n### LlamaFirewall (D)\n\nGood for: A Python agent team that wants injection, hidden-character and generated-code checks in process, is willing to pin dependencies or install from main, and can get the gated weights.\n\nAhead on:\n- Payments \u0026 pricing, 50 against 0\n\nAlso in its favour:\n- No key needed to call it\n- Open source\n- No incidents deducted, where Cisco AI Defense Inspection API loses 3 points for them\n\nWatch for: No PyPI release since 1.0.3 on 29 May 2025, and no changelog, tags or deprecation notes were found\n\n\n## Score by category\n\n| Category | Weight | Cisco AI Defense Inspection API | LlamaFirewall | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 80 | 53 | Cisco AI Defense Inspection API +27 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 59 | 49 | Cisco AI Defense Inspection API +10 |\n| Agent ergonomics | 13% (16.2 this run) | 67 | 60 | Cisco AI Defense Inspection API +7 |\n| Security \u0026 auth | 14% (17.5 this run) | 81 | 56 | Cisco AI Defense Inspection API +25 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 0 | 50 | LlamaFirewall +50 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 80 | 15 | Cisco AI Defense Inspection API +65 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 76 | 58 | Cisco AI Defense Inspection API +18 |\n| Negative events | ≤15 | -3 | 0 | |\n| **Total** | | **61.3 · C** | **50.8 · D** | |\n\n## Facts side by side\n\n| Fact | Cisco AI Defense Inspection API | LlamaFirewall |\n| --- | --- | --- |\n| Kind | HTTP API | Agent framework |\n| Vendor | Cisco Systems, Inc. | Meta |\n| Hosted endpoint | `https://us.api.inspect.aidefense.security.cisco.com/api/v1/inspect/chat` | no (local only) |\n| Transports | HTTP |  |\n| Auth | API key | None |\n| Pricing | Paid | Free |\n| x402 | no | no |\n| Licence | Proprietary service under Cisco's General Terms and the AI Defense Offer Description. The Python SDK is Apache-2.0 | MIT (library). The Prompt Guard 2 weights it downloads are under the Llama 4 Community Licence |\n| Read-only variant documented | no | no |\n| llms.txt | no | no |\n| Last release | 2026-09-23 | 2025-05-29 |\n| Terms last updated |  | no document linked |\n| Privacy policy last updated | no document linked | no document linked |\n| Customer content may train models |  |  |\n| Terms restrict automated access |  |  |\n| Terms restrict benchmarking |  |  |\n| Terms or service can change without notice |  |  |\n| Arbitration or class-action waiver |  |  |\n| Popularity | 35 stars, 4k PyPI/wk | 4.4k stars, 1k PyPI/wk |\n\n## Verdicts\n\n**Cisco AI Defense Inspection API.** Per-connection API keys with expiry, revocation and regeneration, published limits of 60,000 calls a minute, weekly dated release notes and a one-year retention statement suit companies already on Cisco Security Cloud Control. Access needs a subscription bought through sales, with no public price or trial for the API, and the developer changelog has one entry from February 2025.\n\n**LlamaFirewall.** One `scan()` call runs several checks on the owner's machine and returns a short typed result. The last PyPI release is 1.0.3 from 29 May 2025, and its Prompt Guard loader imports a `huggingface_hub` class that current versions no longer export, so a fresh install needs older pins. The classifier weights also need Meta's manual approval.\n\n## Before you call either\n\n### Cisco AI Defense Inspection API\n\n1. Send the key in `X-Cisco-AI-Defense-API-Key` to `POST /api/v1/inspect/chat` on the regional host where the tenant was created. US, Europe and Asia Pacific hosts differ\n2. If the connection has a policy, `enabled_rules` in the request is ignored. Pass `enabled_rules` only for connections with no policy\n3. The API never blocks anything itself. Read `is_safe` and `action` in the response and enforce the decision in your own code\n4. On 429, wait and retry. The organisation has gone over one million tokens in parallel or 60,000 calls a minute\n5. Don't request the Toxicity rule. It was removed on 16 September 2026, and the Safety rules such as Hate Speech, Harassment and Profanity replace it\n\n### LlamaFirewall\n\n1. Pin `huggingface_hub` below 1.0 and a matching `transformers` 4.x before importing the Prompt Guard scanner from the 1.0.3 wheel, or install from main\n2. Get access to `meta-llama/Llama-Prompt-Guard-2-86M` and set a Hugging Face token first. Without one the loader prompts for a login and a headless run stalls\n3. Call `scan_async` inside a running event loop. `scan()` wraps `asyncio.run` and fails there. `scan_async` returns score 0.0 and reason `default` on every allow\n4. Split text longer than 512 tokens yourself before a Prompt Guard scan. The library truncates and does not chunk\n5. Do not feed a block `reason` back to the model. The Prompt Guard reason quotes the full scanned text, and the hidden ASCII reason decodes the hidden payload\n\n## Questions\n\n### Which is better for AI agents, Cisco AI Defense Inspection API or LlamaFirewall?\n\nCisco AI Defense Inspection API scores 61.3 (C) on agent readiness against LlamaFirewall's 50.8 (D), and leads in 6 of 7 scored categories. LlamaFirewall leads on payments \u0026 pricing.\n\n### Can an agent call Cisco AI Defense Inspection API and LlamaFirewall without installing anything?\n\nCisco AI Defense Inspection API has a hosted endpoint at https://us.api.inspect.aidefense.security.cisco.com/api/v1/inspect/chat. No hosted endpoint is listed for LlamaFirewall.\n\n### Are Cisco AI Defense Inspection API and LlamaFirewall open source?\n\nNo open-source release is listed for Cisco AI Defense Inspection API. LlamaFirewall is open source (MIT (library). The Prompt Guard 2 weights it downloads are under the Llama 4 Community Licence).\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-llamafirewall.json, and with the fewest tokens: https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-llamafirewall.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"cisco-ai-defense-inspection\", \"b\": \"llamafirewall\"}`. From a terminal: `anchor compare cisco-ai-defense-inspection llamafirewall`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/cisco-ai-defense-inspection.json and https://www.anchorterminal.com/api/v1/tools/llamafirewall.json\n\n## Other comparisons with Cisco AI Defense Inspection API or LlamaFirewall\n\n- [Amazon Bedrock Guardrails vs Cisco AI Defense Inspection API](https://www.anchorterminal.com/compare/amazon-bedrock-guardrails-vs-cisco-ai-defense-inspection.md)\n- [Amazon Bedrock Guardrails vs LlamaFirewall](https://www.anchorterminal.com/compare/amazon-bedrock-guardrails-vs-llamafirewall.md)\n- [Azure AI Content Safety (Prompt Shields) vs Cisco AI Defense Inspection API](https://www.anchorterminal.com/compare/azure-ai-content-safety-vs-cisco-ai-defense-inspection.md)\n- [Azure AI Content Safety (Prompt Shields) vs LlamaFirewall](https://www.anchorterminal.com/compare/azure-ai-content-safety-vs-llamafirewall.md)\n- [Cisco AI Defense Inspection API vs Google Cloud Model Armor](https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-google-model-armor.md)\n- [Cisco AI Defense Inspection API vs Granite Guardian](https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-granite-guardian.md)\n- [Cisco AI Defense Inspection API vs Guardrails AI](https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-guardrails-ai.md)\n- [Cisco AI Defense Inspection API vs Lakera Guard (Check Point AI Guardrails)](https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-lakera-guard.md)\n- [Cisco AI Defense Inspection API vs NVIDIA NeMo Guardrails](https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-nemo-guardrails.md)\n- [Cisco AI Defense Inspection API vs OpenAI Guardrails](https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-openai-guardrails.md)\n- [Cisco AI Defense Inspection API vs Prisma AIRS AI Runtime Security API](https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-prisma-airs.md)\n- [Google Cloud Model Armor vs LlamaFirewall](https://www.anchorterminal.com/compare/google-model-armor-vs-llamafirewall.md)\n- [Granite Guardian vs LlamaFirewall](https://www.anchorterminal.com/compare/granite-guardian-vs-llamafirewall.md)\n- [Guardrails AI vs LlamaFirewall](https://www.anchorterminal.com/compare/guardrails-ai-vs-llamafirewall.md)\n- [Lakera Guard (Check Point AI Guardrails) vs LlamaFirewall](https://www.anchorterminal.com/compare/lakera-guard-vs-llamafirewall.md)\n- [LlamaFirewall vs NVIDIA NeMo Guardrails](https://www.anchorterminal.com/compare/llamafirewall-vs-nemo-guardrails.md)\n- [LlamaFirewall vs OpenAI Guardrails](https://www.anchorterminal.com/compare/llamafirewall-vs-openai-guardrails.md)\n- [LlamaFirewall vs Prisma AIRS AI Runtime Security API](https://www.anchorterminal.com/compare/llamafirewall-vs-prisma-airs.md)\n- [Cisco AI Defense Inspection API vs Llama Guard 4](https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-llama-guard.md)\n- [Cisco AI Defense Inspection API vs Mistral Moderation API](https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-mistral-moderation.md)\n- [Cisco AI Defense Inspection API vs OpenAI Moderation API](https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-openai-moderation.md)\n- [Cisco AI Defense Inspection API vs Presidio](https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-microsoft-presidio.md)\n- [LlamaFirewall vs Presidio](https://www.anchorterminal.com/compare/llamafirewall-vs-microsoft-presidio.md)\n- [LlamaFirewall vs Mistral Moderation API](https://www.anchorterminal.com/compare/llamafirewall-vs-mistral-moderation.md)\n- [Llama Guard 4 vs LlamaFirewall](https://www.anchorterminal.com/compare/llama-guard-vs-llamafirewall.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-09",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "Cisco AI Defense Inspection API vs LlamaFirewall",
        "url": ""
      }
    ],
    "description": "Cisco AI Defense Inspection API scores 61.3 (C) on agent readiness against LlamaFirewall's 50.8 (D), and leads in 6 of 7 scored categories. LlamaFirewall leads on payments \u0026 pricing. Both do guard injection. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "Cisco AI Defense Inspection API C 61.3",
      "LlamaFirewall D 50.8",
      "scores"
    ],
    "h1": "Cisco AI Defense Inspection API vs LlamaFirewall",
    "image": "https://www.anchorterminal.com/assets/og/compare-cisco-ai-defense-inspection-vs-llamafirewall.png",
    "path": "/compare/cisco-ai-defense-inspection-vs-llamafirewall",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Cisco AI Defense Inspection API vs LlamaFirewall for AI agents",
    "toc": null,
    "updated": "2026-10-09",
    "url": "https://www.anchorterminal.com/compare/cisco-ai-defense-inspection-vs-llamafirewall"
  },
  "tokens": {
    "markdown": 3000,
    "slim": 730
  },
  "version": 1
}
