Pingora Waf
⚡ High-performance Web Application Firewall built with Rust and Cloudflare's Pingora. Blocks SQL injection, XSS, and malicious traffic at 15K+ req/sec with <7ms latency. Production-ready with Prometheus metrics, rate limiting, and IP filtering. 3x faster than ModSecurity.
5-Factor AST Security Breakdown
Deterministic code heuristics and edge isolation analysis
Passed static AST scan: Verified absence of arbitrary remote eval, prompt injections, and unauthenticated exfiltration webhooks.
Native compatibility with Cloudflare Workers runtime, Workerd engine, or Model Context Protocol schema.
Permissive open-source license detected (MIT, Apache 2.0, or BSD) enabling free edge execution.
README contains comprehensive setup guides, deployment commands, and environmental configurations.
Verified repository structure with authentic commit history (8/12 community traction, 8/8 commit provenance).
Deep Static Code & Manifest Inspection
Automated AST scan of repository configuration and security vectors
eval() or unconstrained reflectionIntegration & MCP Setup
Copy pre-formatted config snippets for your AI IDE or CLI
{
"mcpServers": {
"pingora-waf": {
"command": "npx",
"args": [
"-y",
"@modelcontextprotocol/server-pingora-waf"
]
}
}
}