- ALIGNMENTBound
- DRIFTStable
- PROVENANCEC2PA v2.3
- POLICY BREAKS0 / 1,428
The trust infrastructure for the agentic internet.
Cards declare what agents are. AIP signs how they reason. CLPI signs what they're allowed to do. Mnemom AEGIS defends every transaction across the network — so you can move fast and prove it.
- 04:01:18agent/wintermuteclear·ALIGNMENT HELDL1
- 04:01:16agent/hermes-04quarantine·PROMPT_INJECTION · koL2
- 04:01:14agent/kurtwood-davisclear·DRIFT STABLEL1
- 04:01:12agent/wintermutesigned·ED25519 · CHAIN OK
- 04:01:10agent/parsec-queenreview·UNDECLARED VALUEL2
- 04:01:08agent/hermes-04block·CANARY HIT · P0L1
- 04:01:06agent/navigatorclear·BOUNDED ACTIONL1
Five layers. One coherent runtime.
Designed from first principles, not assembled from acquisitions. Every layer plays a distinct role; cards are the load-bearing primitive at every step.
A Safe House around every agent.
The Protection Card governs the doors — what gets in, what gets out. The Alignment Card governs the turn — what the agent is permitted to do, and why. Both are signed, versioned, auditable.
The first cross-tenant defensive network purpose-built for AI agents.
Safe House is the per-customer perimeter. AEGIS is the network. When one customer's substrate fingerprint shows behavioral deviation, every customer running on that substrate is auto-elevated and a signed Managed Rule lands on every gateway within the propagation SLO.
Four checkpoints — front door, back door, inside.autonomy, inside.integrity — each independently set to off, observe, nudge, or enforce.
Ed25519-signed Managed Rules with a sub-30s P95 propagation target (first measurements publish 30 days post-GA). Tier-1 and tier-2 rules require dual-control human review under an append-only audit chain.
Three signal sources — a 15-persona adversarial arena, customer FN/FP reports, and a cross-tenant aggregator the network can see but no individual customer can.
Per-tenant detection has structurally failed. Substrate fingerprinting catches what Sigstore can't.
Every evaluation is stamped with a substrate fingerprint — provider, model, SDK version, optional lockfile hash. AEGIS attributes anomalies across customers running on the same substrate and propagates a signed Managed Rule before the next agent on the same SDK is hit.
Threats like the Mini Shai-Hulud worm of May 2026 — which compromised 170+ npm packages including Mistral AI's SDK suite and Guardrails AI on PyPI, with valid SLSA-3 attestations on malicious versions — are exactly the cross-tenant pattern AEGIS is designed to detect. We do not replace package-level provenance verification; we are the runtime layer that catches what the supply chain misses.
Know what your agents are actually doing. Before the board asks.
Every agent in your fleet — identified, scored, tracked. Drift surfaced before it becomes an incident. Trust Ratings that travel across OpenAI, Anthropic, Gemini, and local models.
The IoC feed is empty by design.
The thermometer is calm. The advisory list shows one synthetic post-mortem, clearly labeled. We don't fake activity. The system tells the truth.
Every decision, cryptographically signed. For your board, your auditors, your regulators.
Ed25519 signatures on every verdict. Hash-chained traces, exportable as audit bundles. EU AI Act Article 50 SDK presets ship Article 50-ready disclosures out of the box.
Transparency obligations take effect August 2, 2026. Our Article 50 SDK preset ships Article 50-ready disclosures, logging, and machine-readable content marking.
Regulator-ready by construction.
Every governance event is cryptographically signed and append-only audit-chainable. The audit chain is the answer, not a quarterly PDF.
EU AI Act
Articles 10, 12, and Annex IV mapped to the signed governance event chain. Enforcement begins August 2, 2026.
SOC 2 Type II
Readiness program in flight; controls aligned with the AEGIS Managed Rules pipeline and audit chain.
ISO 42001
AI management-system controls mapped to the alignment-card lifecycle and CLPI five-phase governance.
See the evidence.
A sample coherence report shows how we score a fleet. The Arena shows our detectors holding under live red-team attack.
Bring your own auditor.
Open the customer dashboard. Fetch the IoC feed with curl. Or talk to sales about the enterprise-grade pipeline.
