Archestra Released Open-Source Security Engine OpenAPPA
The new security tool blocks prompt injection and hallucination threats in agentic workflows.
Updated on Oct. 4, 2026 in Cybersecurity

Live Poll
Do you trust AI agents to handle sensitive personal or work data securely?
Archestra has released OpenAPPA, an open-source security engine designed to prevent data exfiltration from prompt injection or model hallucinations. The tool is currently in preview.
Why it matters
Stochastic approaches to automated security often fail to track complex data flows across tool calls, resulting in either insecure systems or overly restrictive agents. OpenAPPA seeks to address this by enforcing policy outside the standard agent execution loop.
In Bench-Corp and AgentThreatBench testing, OpenAPPA recorded a 0% attack success rate while maintaining an 89% task completion rate, compared to Microsoft FIDES' 41% completion rate.
The players
Archestra
A developer of security infrastructure focused on isolating and securing agentic AI workflows.
UK AI Safety Institute
A research body that maintains the AgentThreatBench repository for evaluating AI agent security.
Microsoft
A large-scale software corporation providing enterprise-grade AI security frameworks like FIDES.
The details
OpenAPPA functions by executing independently of the primary agent prompt and execution loop. It utilizes lattice algebra—a mathematical framework used for modeling logical order—to compose and monitor security labels regarding data sources, audiences, and trust levels. This structure allows the system to verify data flow integrity through 20 multi-step enterprise workflows without relying on probabilistic filtering.
Timeline
October 3, 2026: Archestra released OpenAPPA.
2026: The OWASP Top 10 for Agentic Applications is scheduled for publication.
The Tech Race
The emergence of OpenAPPA signals a departure from stochastic security measures toward structured policy enforcement. It positions itself against established frameworks like Microsoft FIDES by leveraging benchmarks now integrated into the UK AI Safety Institute repository.
Developers can currently access OpenAPPA in preview to secure AI agent prompt and execution flows. It is intended for enterprise environments requiring granular control over data flow across multi-step tool calls.
The takeaway
OpenAPPA offers a deterministic alternative to standard AI security, demonstrating significant gains in both attack prevention and task completion benchmarks. Stakeholders should monitor the 2026 release of the OWASP Top 10 for Agentic Applications to see how these benchmarks influence standardized security requirements.
Further reading
For more on the latest research and tools securing the agentic ecosystem, visit Cybersecurity.
Live Poll
Do you trust AI agents to handle sensitive personal or work data securely?






