# Protect AI

**Canonical:** https://apis.io/providers/protect-ai/  
**Website:** https://protectai.com  
**APIs profiled:** 0

Protect AI is an AI/ML security company building defensive tooling and open-source security research for the model supply chain, large language model (LLM) applications, and runtime AI workloads. The commercial platform is anchored by three products — Guardian (AI model security and third-party model scanning across PyTorch, TensorFlow, ONNX, Keras, Pickle, GGUF, Safetensors, and 35+ formats with Hugging Face, SageMaker, MLflow, S3, Git, and Artifactory integrations), Recon (scalable AI red teaming with an attack library of 450+ known attacks against LLM applications mapped to OWASP LLM Top 10), and Layer (runtime AI security with 27 turnkey policies, eBPF and SDK collection, and DataDog/Splunk/Elastic/PagerDuty integration). Protect AI also stewards a portfolio of widely used open-source AI security projects on GitHub including LLM Guard (input/output scanner toolkit for prompt injection, PII, toxicity, secrets, and data leakage detection), ModelScan (model serialization attack scanner), Rebuff (prompt injection detector, archived May 2025), NB Defense (Jupyter notebook security), AI Exploits (real-world AI/ML vulnerability demonstrations), and Vulnhuntr (LLM-driven autonomous vulnerability discovery), plus the huntr bug bounty platform for AI/ML with over 17,000 security researchers. Protect AI was acquired by Palo Alto Networks in 2025 and is being integrated into the Prisma AIRS AI security platform. No public, programmatic developer API or OpenAPI specification is published for Guardian, Recon, or Layer at the time of this profile — integration is performed via product CLIs, SDKs, eBPF agents, and platform connectors documented behind Palo Alto Networks customer accounts.

## Kin Score — 5.3 / 100 (minimal)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 5.3).

| Facet | Score |
|---|---|
| Discoverability | 50.0 |
| Contract Quality | 0.0 |
| Governance | 0.0 |
| Contract Governance | 0.0 |
| Operational Transparency | 2.6 |
| Developer Ergonomics | 0.0 |
| Commercial Clarity | 0.0 |
| Access Clarity | 0.0 |

## Agent readiness — 0.0 (human-only)

| Dimension | Value |
|---|---|
| Spec Presence | no |
| Agentic Access | no |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | no |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | no |
| Rate Limit Signal | no |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Unknown — onboarding: unknown, pricing: unknown, trial: no (confidence: low).

## Security (1)

- **Protect Ai Domain Security** — TLSv1.3 · HSTS · DNSSEC · DMARC

## Tags

AI Security, ML Security, MLSecOps, AI Model Security, AI Red Teaming, LLM Security, Prompt Injection, Model Scanning, Runtime Security, Supply Chain Security, AI Bug Bounty, Open-Source, Acquired, Palo Alto Networks

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/protect-ai/). Scores are computed from the provider's own public artifacts under a published rubric.
