AprielGuard
A guard model that catches both harmful content and attacks on AI (prompt injection, jailbreaks), including when agents use tools.
- Developer
- ServiceNow, USA
- First release
- Dec 2025
- Latest release
- Dec 2025
- Sizes
- 8B
- License
- Commercial use allowedMIT
- Russian
- Not supported
- Running
- On your own serverNeeds a GPU
- Industries
- Security, Customer support, Software development
What it does
- Screening chatbot requests for attacks and jailbreaks
- Filtering harmful model answers
- Monitoring the actions of AI agents that use tools
Where it is used
Hardware requirements
Versions
- AprielGuard 8B
How to run it
I can set this up end to end: pick the model size, deploy it on your server and connect it to your systems.
Frequently asked questions
Can AprielGuard be used in a commercial project?
Yes. License: MIT. It allows commercial use, but it is still worth having a lawyer review the license before launch.
What hardware does AprielGuard need?
At minimum: Laptop or regular PC, up to 8 GB of VRAM — smaller versions. Without a GPU the model is not practical. You can calculate the exact VRAM for your model size and context in the hardware calculator.
Does AprielGuard support Russian?
No. The model card lists its languages and Russian is not among them.
Where can I download AprielGuard and what does it cost?
The AprielGuard weights are open and free to download. You only pay for the hardware it runs on and for the setup. Source links are at the bottom of this page.
How I deploy it for clients
- SelectionI pick the model size for your task and hardware and test it on your examples.
- DeploymentI deploy it on your server or in a closed network and provide an API.
- Fine-tuningI fine-tune it on your data (LoRA) or connect a knowledge base — whichever is cheaper for the task.
- IntegrationI connect it to your CRM, ERP, bot, website or team chat and set up monitoring.
Similar models
Filter models that check chatbot requests and replies for dangerous topics against a list of categories. Version 4 also checks images. Russian is not officially supported.
DetailsModeration and safetyGranite GuardianIBM · USACommercial use allowedIBM judge models: they catch harm, profanity and jailbreak attempts, and in RAG and agents check whether an answer is grounded in the documents. You can state your own rule in words.
DetailsModeration and safetyPrompt GuardMeta · USACommercial use with conditionsTiny classifiers that catch attempts to hack a bot: prompt injections and rule bypassing. The 86M version is multilingual, 22M is English only.
DetailsSource: huggingface.co/blog/ServiceNow-AI/aprielguard. Data checked against the model card on 22 Sep 2026. Have a lawyer review the license before commercial launch.


