Six pillars, one product
Everything ships behind a single SKU — no add-ons, no per-feature billing.
Identity for every agent
First-class registry with lifecycle states, signed agent cards (JWS), DPoP token binding, software attestation, and one-click kill switch.
Drop-in MCP gateway
Reverse proxy in front of any MCP server. We do the PDP check, redact PII / secrets, write a tamper-evident ledger row, and only then forward upstream.
ML prompt-injection blocking
Lakera Guard and Lasso Security plug straight into the gateway. Built-in heuristic scanner ships out of the box for sub-second BLOCK / FLAG verdicts.
PDP federation
Already own OPA, Cedar, or AVP? Run them alongside Agent Guard in REMOTE_ONLY, UNANIMOUS, or REMOTE_OVERRIDES mode. Universal AuthZEN v0.1 passthrough.
Continuous authorization
DPoP nonce ratchet caps stolen-token windows at ~60s regardless of JWT exp. Admin-revoke pushes via SSE — SDKs drain in-flight caches in <200ms.
Compliance built in
Hash-chained compliance ledger, ISO/IEC 42001 + EU AI Act Art. 9–15 report generators, public transparency dashboard. Show the auditor on day one.
Standards-conforming, not standards-leading
We ship interop, not committee work. Every flow speaks an RFC the rest of the ecosystem already supports — no proprietary protocols, no lock-in.
SDKs for every agent framework
One import line gates every tool call through the PDP, hashes the arguments to the ledger, and surfaces deny reasons back to the model.
@identia/agent-guard-sdk/langchainagent_guard.integrations.langchain@identia/agent-guard-sdk/vercel-aiagent_guard.integrations.llama_index@identia/agent-guard-sdk/mcp-gateway