Step 1
Install
One command. Runs locally as a desktop app. Mac, Linux, Windows.
Rashomon by SolidDark
Rashomon is a local security proxy that sits between your AI coding agents and the internet. It monitors outbound traffic in real time, blocks secret exfiltration, catches prompt injection, and gives you approve/deny controls - all on your machine.
Live checkout runs through Lemon Squeezy. Pricing is managed on the checkout page.

What it catches
API keys in outbound requests
Blocked before they leave your machine.
Agent connecting to unknown domains
Approval gate. You decide.
Prompt injection attempts
Caught and flagged by intent analysis.
Bulk data exfiltration
Rate limiting and anomaly detection.
.env contents in request bodies
Entropy detection catches it.
How it works
Step 1
One command. Runs locally as a desktop app. Mac, Linux, Windows.
Step 2
Rashomon becomes a local proxy. All AI agent traffic routes through it automatically.
Step 3
Open the dashboard. Set rules. Approve or deny requests in real time. Full audit trail.
How is this different from built-in sandboxing?
Tools like Claude Code and Cursor offer basic network sandboxing - IP allowlists that block or allow entire domains. That's a lock on the door. Rashomon reads every package that goes through the door. It inspects payload contents for secrets, detects anomalous patterns, understands which AI agent is making the request, and gives you approve/deny controls with full explanations. Sandboxing controls where traffic goes. Rashomon understands what's inside it.
Pricing
Basic monitoring, default rules, 30-day audit log. Monitors but does not block.
Download freeFull product. All v1.x updates. Available until the first 100 purchases.
First 100 customers only
Buy on Lemon SqueezyStandard pricing begins after the first 100 purchases.
Pricing activates later30-day money-back guarantee. No subscription. No annual renewal.