Bot Lock helps you reduce AI agent risk with least privilege, audit, and deny-by-default tools — not wishful system prompts. Honest controls. No magic guarantee.
From 20 educational AI-security sources (2026). Top risks we bake into Check & Playbook:
Also weighted: excessive agency, tool abuse, MCP supply chain, secrets, exfil, guardrails, token delegation.
Defense in depth for LLM apps, agents, MCP servers, and multi-agent workflows.
Interactive self-assessment scored from weighted AI security themes. Works offline in your browser.
Dense playbook plus deny-by-default tools, MCP allowlist, secrets, and kill-switch YAML templates.
Field Kit plus MCP identity, vault issuance patterns, and immutable audit guidance for production agents.
We weight Bot Lock Check and the playbook toward the themes that show up most — so you fix what matters first.
| Theme | Weight | Coverage |
|---|---|---|
| Prompt injection / jailbreak | 16/20 | |
| Logging / monitoring / audit | 16/20 | |
| Least privilege / IAM | 12/20 | |
| Excessive agency / autonomy | 11/20 | |
| Agent tool abuse | 11/20 | |
| Supply chain / MCP / plugins | 11/20 | |
| Secrets management | 10/20 | |
| Data exfiltration / privacy | 9/20 | |
| Guardrails / I/O filtering | 9/20 | |
| Token delegation / OAuth | 9/20 |
One-time Stripe checkout on the First Deploy account. After pay you land on the playbook.
Live Stripe checkout.
Live Stripe checkout.
Honest positioning: Bot Lock reduces agent risk when you apply layered controls. It does not guarantee zero successful injections or replace authorized red-team verification.
Dense, defense-only guidance: principles, checklists, anti-patterns, and a verification playbook for systems you own.
Read teaserQuestions on Field Kit, Pro, or enterprise rollout? Reach Daniel Graham / Reed at AgentHive Inc.
Email Daniel