Metasearch, not scraping-as-a-service
Queries a self-hosted SearXNG instance you control. No third-party API keys, no rate-limited search vendors, no unexpected data exfiltration.
How the pipeline works
A Go MCP server that searches the open web, strips PII, screens prompt-injection payloads, and hands back LLM-ready markdown with a full audit trail.
Foundation models cannot safely ingest raw third-party HTML. It carries PII, prompt-injection payloads, adversarial instructions, tracking artifacts, and noise that blows up token budgets.
Palena is the boundary layer β the name means boundary or limit in Hawaiian. It sits between your agent and the open web, enforces the policies your compliance team actually cares about, and returns clean, hashed, audited markdown your model can trust.
web_search) that orchestrates six stages: search β scrape β PII detection β prompt-injection screening β rerank β markdown formatting.palena.yaml, not burned into code.Fintech, healthtech, govtech, and any team whose legal team has concerns about raw web content reaching an LLM prompt. If you've been told "we can't ship unfiltered HTML into a model," Palena is the filter.
Start with Getting Started to bring up the stack, then read Concepts for the full pipeline picture.