Pipelock is an open-source AI agent firewall that provides security protection with zero runtime dependencies through a single binary file. It adopts an architecture with separated capabilities and deploys a nine-layer scanning pipeline between the agent and the Internet to prevent secret leakage, prompt injection, and malicious tool calls. It supports multiple proxy modes (Fetch proxy, forward proxy, WebSocket proxy) and MCP proxy, and provides functions such as an emergency stop switch, audit logs, and SIEM integration.