Secure
execution for
modern
automation.
A policy enforcement runtime that inspects requests before they reach upstream APIs. Built for the current pilot deployment path and the operational controls that go with it.
Automation is scaling.
Control is not.
Operations now move through Zapier, Make, custom scripts, and AI agents. Those flows still need request-level inspection because perimeter controls do not understand what happens inside the workflow.
When an unverified third-party app executes a workflow across your internal API, you don't have a firewall problem. You have a runtime problem.
Zero-Trust Execution.
Change the webhook URL. Add a YAML policy file. Guard Rail sits between and inspects every payload before it reaches your enterprise core.
Zapier · AI Agent
Core Banking · ERP
gw.guardrail.co.za/v1/execute/{route} instead of your internal system. No other code changes.YAML policies.
Version-controlled.
Hot-reloaded.
Define security rules as YAML files alongside your infrastructure config. Guard Rail watches for changes and reloads without downtime. Bad syntax keeps the previous valid set active.
Designed for
Resilience.
Guard Rail receives your webhook, inspects the payload against every configured policy using JSONPath field matching, and either forwards or blocks the request. No custom application code runs inside the policy path.
Block malicious payloads at the field level. 11 condition types, JSONPath targeting, hot-reload on file change.
Capture full request state. Replay exact execution for debugging — against current or modified policies.
Guard Rail refuses to start if policy files reference a missing name. On hot-reload, a syntax error keeps the last valid set active so an invalid update does not silently disable inspection.
On-premise or single-region ZA AWS VPC deployment gives teams a path to keep payload handling within their chosen boundary. Final compliance still depends on deployment, policy, and operational controls.
What standard
gateways miss.
| Capability | Legacy API Gateways | In-house Middleware | Guard Rail |
|---|---|---|---|
| Header & Token Auth | ✓ | ✓ | ✓ |
| Deep Payload Logic Inspection | — | Partial | ✓ |
| Sandboxed Execution Environment | — | — | ✓ |
| Deterministic Error Replay | — | — | ✓ |
| ZA Residency Controls | Vendor-specific | ✓ | ✓ |
Predictable compute pricing
aligned to enterprise scale.
- //1 Sandbox Environment
- //Up to 1M executions
- //14-day log retention
- //Multi-tenant isolation
- //Unlimited execution volume
- //On-premise / VPC deployment
- //Cryptographic auditing SDK
- //White-labeled runtime
- //Embed in your iPaaS
- //Source code escrow
Join the infrastructure.
Book a 30-minute call and we'll configure your first policy live. No SDK. No agents. No infrastructure overhaul.