Zeron is a part of Google for Startups AcceleratorLearn more →
Platform ZAK Agentsagentctl Company
Solutions
By industryBy role
Resources
Resources hubBlogCustomer storiesResearch
Contact
Early access · agentctl

Govern the AI agents
you're already running.

Your agents hold real credentials, real tool access, and leave no audit trail. agentctl discovers every one, enforces what it can touch, and logs every action — across Claude, Cursor, Copilot and your own.

  • Discover every agent — even the ones nobody registered
  • Per-agent guardrails on tools, data and egress
  • A tamper-evident ledger of every action
Certified ISO/IEC 27001 ISO/IEC 42001 SOC 2 Type II
1 / 5
0

automated actions an AI attacker ran on Hugging Face — in one weekend

0

agent discovery — including shadow agents nobody registered

0

policy overhead per governed action — your agents stay fast

Enterprise-grade trust
ISO/IEC 27001:2022 — Information Security Management ISO/IEC 42001 — AI Management System SOC 2 Type II ISO 9001:2015 CSA STAR Level 1
Backed byGoogle for Startups Accelerator
The problem

Ship agents fast. Govern them faster.

Every team is spinning up agents. Almost nobody can answer three questions about them — and that gap is now a live attack surface.

Which agents are running?

Agents get spun up in every repo, CI job and SaaS integration. Most orgs have no inventory — and can't see the shadow agents holding real access.

What can they touch?

Autonomous agents carry production credentials and tool permissions no one scoped. One over-broad token is one prompt injection away from a breach.

What did they do?

When an agent acts, there's rarely a trail. No ledger means no forensics, no accountability, and nothing to show an auditor for ISO 42001 or the EU AI Act.

When OpenAI's own models breached Hugging Face at machine speed, that was an ungoverned agent doing exactly what it was told. Read the breakdown →

What agentctl does

Discover. Guardrail. Audit.

One control plane over every agent your org runs — governed like the privileged identities they are.

Discover. Continuously inventory every agent — coding assistants, MCP servers, CI jobs, autonomous workers — including the ones nobody registered.
Guardrail. Set policy per agent — which tools, which data, which endpoints. Least privilege, enforced at runtime, not in a wiki.
Catch drift. The moment an unregistered or over-scoped agent appears, it's flagged — and every action is written to a tamper-evident ledger.
Fits your stack

Governs the agents you already use.

agentctl sits above your agents, not inside your hot path. It discovers and governs whatever your developers run — coding agents, CLIs and custom builds alike.

… and your own agents, on any framework.

agentctl — discover

        
Why join now

What early access gets you.

Shape the roadmap

A direct line to the team building agentctl. What you need next moves up the list.

Priority, white-glove onboarding

We help you get your first agents discovered and governed — not a docs link and good luck.

Free during the beta

Run agentctl across your agents at no cost while we build toward GA.

Early API, SDK & docs

Build against it early. Your feedback shapes the interfaces before they're locked.

FAQ

Early access, answered.

The questions developers ask before they sign up.

Which agents and frameworks does agentctl support?+

agentctl is framework-agnostic. It governs coding agents like Claude, Cursor, Copilot, Windsurf, Gemini CLI and opencode, MCP servers, CI jobs and custom in-house agents — because it works at the access and action layer, not inside any one tool.

How does it see our agents without slowing them down?+

agentctl sits above your agents as a discovery, policy and audit layer — not in the latency-critical path. Discovery and auditing run continuously; policy is enforced at the tool and access boundary, so your agents keep running at full speed.

Can we self-host or keep data in-region?+

Yes. agentctl runs as an in-region, sovereign deployment with full data residency when you need it — the same posture as the rest of Zeron's control plane (ISO 42001, SOC 2).

What does early access cost?+

Early access is free during the beta. Early-access teams get founding-user pricing when we reach general availability.

How is this different from ZAK?+

ZAK builds and runs governed AI agents. agentctl governs every agent you run — including ones you built without ZAK. If ZAK is the factory, agentctl is the control tower over the whole airspace.

Limited early access

Autonomy without oversight is the new attack surface.

Govern your agents before one of them surprises you. Two minutes to join.

Hello there!
Access the full technical paper detailing graph-based AI reasoning for cyber risk decisions.
Download the Whitepaper