One Platform. Total Control. Legacy to AI
Continuous, runtime control over autonomous machine actors to Govern AI, Automate compliance, and Modernize legacy infrastructure.
Platform capabilities
| Capability | What it delivers |
|---|---|
| Real-Time AI Governance | Inline controls on LLM, agent, and MCP traffic before requests leave your perimeter |
| Dynamic Regulatory Enforcement | Shadow discovery and compliance packs map traffic to FINTRAC, OSFI, PIPEDA, NIST, and more |
| Continuous Non-Human Identity (NHI) Verification | Every service account, agent, and MCP client verified at runtime — not just at login |
| Sub-5ms Runtime Enforcement | Bouncer — sub-5ms inline enforcement keeps authorization off your application hot path |
| Token Cost Circuit-Breaking | AI Pilot BackendTrafficPolicy + Redis budgets halt runaway AI spend |
| Sovereign Bouncer | Stop threats before they reach your systems — data and decisions stay in your VPC |
Control Core is a policy-based access control (PBAC) platform: a Control Plane to author and lifecycle controls, and Bouncers that enforce decisions at the edge of your APIs, data paths, and AI traffic. Data stays in your infrastructure.
API reference: With the Control Plane deployed, use the Developer Portal at
/devdocson your Control Plane URL. This site covers deployment, administration, authoring, and integration guides.
Find your path
Quick deploy
Control Plane, Bouncer, first control — about 60 minutes.
View guideOpsDeployment modes
Sidecar, reverse proxy, or shadow — pick the right topology.
View guideAIAI governance
NHI verification, MCP blast radius, token cost circuit-breaking.
View guideReferenceControl Plane UI
Map of screens and settings in the product UI.
View guideAuthorsAuthor controls
Visual Builder, Rego editor, SCCA, scenarios, simulator.
View guideDiscoveryShadow compliance discovery
Shadow mode, compliance packs, gap reports, enforce upgrade.
View guidePIPsConnect data sources
Map attributes from IdPs and systems into control context.
View guideComplianceObserve & audit
Decision streams, SIEM, audit vs diagnostic logs.
View guideBy role
| Role | Start here |
|---|---|
| Platform / security engineer | Quick deploy, Deployment modes, Administrator |
| Control author / compliance | Controls Manager, Auto-generate controls, PBAC best practices |
| DevOps / SRE | Deployment, Installation, Troubleshooting |
| Integration / API engineer | Connect your first PIP, API reference |
Licensing (two options)
| Path | Summary |
|---|---|
| Kickstart | 90-day trial (extensions via support). See Kickstart. |
| Custom | Annual perpetual license for production-style deployments. See Custom deployment and Licensing and deployment options. |
Topic index
| Area | Guides |
|---|---|
| Core | Quick deploy, Core concepts, Architecture |
| Deploy | Deployment modes, Overview, Kickstart |
| Admin | Administrator, License |
| AI | AI governance, NHI verification |
| Help | FAQ, Troubleshooting, Glossary |
Next step: Quick deploy or Deployment modes.