2026-10-11 17:12 UTC

Cloakwall’s maintainer claims the released LiteLLM integration provides PII redaction and tamper-evident audit logging without sidecars, potentially creating a simpler privacy and accountability control point for LLM traffic.

state: expiredheat: lowuncertainty: highconvergesscott: mediumai-infrastructure llm-gateway-security pii-protection agent-auditRishikesh-glitch

What is this?

Cloakwall is presented as an open-source, MIT-licensed, self-hosted middleware integration for LiteLLM that detects and tokenizes PII before prompts leave the user’s infrastructure, then cryptographically signs LLM-call records to create tamper-evident audit trails without a sidecar. The supplied product snippet calls the project “CloakLLM,” while the case calls it “Cloakwall”; a GitHub discussion attributes the integration claim to user jagmarques, so the supplied evidence does not clearly establish the project name, maintainer identity, or the claimed v0.1 release. LiteLLM already documents PII masking through Presidio, but these snippets do not establish how Cloakwall’s coverage, reversibility, or operational simplicity compares.

Why it matters to Scott

The claimed integration independently converges with Scott’s company-gateway and privacy-tokenized-boundary designs, and it targets LiteLLM—the gateway through which his projects already route model calls—so a verified implementation could simplify controls he actively builds. It also overlaps his cryptographic-receipt position, but the unclear project identity, release status, and lack of comparative testing prevent treating it as an immediately actionable advance.
ip:concept.company-ai-gatewaydev:concept.privacy-tokenized-agent-boundarydev:technology.litellmip:concept.cryptographic-trustip:concept.agent-receiptsradar:llm-shield-zero-egress-pii-proxyradar:agentgate-signed-agent-receiptsradar:concept.ai-privacyradar:concept.auditability
queries asked of Scott's wikis
  • LLM gateway as privacy control point
  • reversible PII tokenization for model traffic
  • tamper-evident audit logs for agents
  • sidecar-free AI infrastructure security
  • LiteLLM guardrails and observability
  • cryptographic accountability for LLM calls

Measured heat

no measured readings yet — the hourly heat pass fills this in

How the heat travelled

no chain yet — the hourly chain pass fills this in

Evidence (2) — ⭐ canonical anchor

sourceobjectauthorscorecomments
🟧 hnAme framinPII redaction and tamper-evident audit logs for LiteLLM, no sidecarsRishikesh-glitc10
🟧 echo.github ⭐The repository releases Cloakwall v0.1 for PII redaction and tamper-evident LiteLLM audit logs without sidecars.Rishikesh-glitch——

Interpretation history

Decision trace