JANUS

Guardrail Bypass Testing

97% of guardrails can be defeated. JANUS proves it. Guardrail identification, known technique library, payload encoding evasion, automated bypass discovery, multi-technique chains, and assessment reporting — weaponised for authorised red team engagements.

6
Subsystems
73
Tests
View Documentation GitHub

97% of Guardrails Can Be Defeated

JANUS targets AI guardrails — the safety mechanisms that vendors claim protect their models. Every content filter, every refusal mechanism, every safety classifier — all bypassable. JANUS proves that guardrails provide a false sense of security.

01

FINGERPRINTER

GUARDRAIL IDENTIFICATION

Identify and fingerprint guardrail implementations. Classify safety mechanisms by type and vendor. Map refusal patterns and content filter boundaries.

02

BYPASS

KNOWN TECHNIQUE LIBRARY

Comprehensive library of proven guardrail bypass techniques. Role-play attacks. Context manipulation. Instruction hierarchy exploitation. Growing technique database.

03

ENCODER

PAYLOAD ENCODING EVASION

Encode payloads to evade content filters. Base64 encoding. Unicode obfuscation. Token-level manipulation. Multi-language translation evasion.

04

FUZZER

AUTOMATED BYPASS DISCOVERY

Automated fuzzing for novel guardrail bypasses. Mutation-based payload generation. Evolutionary bypass discovery. Zero-day guardrail vulnerability finding.

05

CHAINER

MULTI-TECHNIQUE CHAINS

Chain multiple bypass techniques for compound attacks. Sequential guardrail erosion. Progressive boundary pushing. Multi-step evasion campaigns.

06

REPORTER

ASSESSMENT REPORTING

Generate comprehensive guardrail assessment reports. Bypass success rates. Technique effectiveness metrics. Remediation recommendations. Executive summaries.

UNLEASHED Gate

Standard mode detects. UNLEASHED exploits. Ed25519 crypto. Dual-gate safety. One operator.

Detection

Maps guardrail implementations. Identifies safety mechanism types and vendors. No exploitation. Reports only.

Dry Run

Plans full guardrail bypass campaigns. Shows exactly what would work. Ed25519 required. No execution.

Live Execution

Cryptographic override. Private key controlled. One operator. Founder's machine only.

THIS TOOL IS FOR AUTHORISED SECURITY TESTING ONLY. EVERY EXECUTION IS SIGNED AND LOGGED.

73
Tests
6
Subsystems
50,914
Ecosystem Tests
Available On

Security Distros & Package Managers

Kali Linux
.deb package
Parrot OS
.deb package
BlackArch
PKGBUILD
REMnux
.deb package
Tsurugi
.deb package
PyPI
pip install

97% of Guardrails Can Be Defeated. JANUS Proves It.

6 subsystems. 73 tests. Guardrail bypass testing. The tool that proves your AI safety mechanisms aren't safe.