Skip to content
ShieldedStackShieldedStack

ShieldedStack Documentation

The dependency firewall and package security proxy that runs inside your environment. Configure it, enforce policy on every install, and see exactly what your builds pulled.

Route installs through the proxy

Point npm, NuGet, pip, Maven, Go, Cargo, RubyGems, or pub.dev at your proxy and authenticate with a workspace API key.

Decide what gets through

Allow lists, deny lists, grace periods, and runtime blocking, applied per workspace at install time rather than after the fact.

See what your builds pulled

Every proxy request is recorded with its verdict, so you can trace a package version back to the project and pipeline that requested it.

Stay in your own environment

The Control Plane, proxy, and data stores all run on infrastructure you operate. Nothing about your runtime leaves it.