STATEFOLD
ENDPOINT AI SECURITY
New — verified answers, evidence chains & kernel-level enforcement

Govern every AI
on every endpoint.

Statefold discovers every AI tool your people touch, enforces policy at the kernel — before a single token is sent, governs identity, vulnerabilities and the models themselves across the fleet, and remembers it all in the Hive Mind — your enterprise's own model, answering with a verified fact, a real citation, or an honest "I don't have enough evidence." No external LLM. Nothing leaves the box.

  • No external LLM
  • Enforced at the kernel
  • Offline-safe
Watches every AI surface on the machine
Browser AI·IDE assistants·MCP servers·Amazon Bedrock·Native SDKs·Clipboard·Local proxy·DNS·Autonomous agents·File egress· Browser AI·IDE assistants·MCP servers·Amazon Bedrock·Native SDKs·Clipboard·Local proxy·DNS·Autonomous agents·File egress·
0AI surfaces watched, per endpoint
0verdicts — allow · alert · redact · block
0agent grants, then auto-expire
0external models in the trust path
01 The gap

Shadow AI is already inside your perimeter.

Copilots, chat tabs, IDE assistants, MCP servers and autonomous agents arrive faster than security can review them. The old stack watches files and networks — not a kernel-level view of every AI touchpoint, and nothing that remembers or learns from what it sees.

Unseen usage

You can't name the AI tools running on your endpoints, who runs them, or with what privilege. Discovery stops at the network edge — and the AI lives past it.

Ungoverned agents & identity

Anyone can spin up an agent and hand it credentials. Nothing verifies which identity the agent actually belongs to, or stops a quiet exfiltration to a model API.

No memory, no proof

Prompts, answers, code, vulns and model reviews evaporate. When an incident lands, or an auditor asks, there's nothing to point to — and no intelligence that's actually yours.

02 The platform

A kernel-level sensor. A console in command.

Two executables. The agent enforces locally — down to the Windows Filtering Platform — and keeps protecting even when disconnected. The console gives operators fleet-wide discovery, identity, risk, compliance, the Hive Mind and the Swarm — isolated per tenant for MSSPs and global enterprises alike.

StatefoldAgent.exe

Endpoint sensor

Observes every AI surface — proxy, browser, IDE, MCP, Bedrock, clipboard, DNS — and enforces at the kernel, before data leaves the endpoint.

StatefoldConsole.exe

Management console

Fleet telemetry, identity, risk and compliance reporting, the Hive Mind and the Swarm — one API, an embedded store, multi-tenant by design.

Discover & enforce

03 →

Discovery

Every device, identity and AI touchpoint — agents, models, APIs and MCP servers — drillable to one endpoint.

Detections & DLP

Inline checks on prompts and responses across every surface — allow, alert, redact, block — before data ever leaves the endpoint.

WFP

Kernel Enforcement

Policy enforced at the Windows Filtering Platform — the kernel network layer no proxy bypass or browser extension can route around.

Govern identity & access

03 →

AI Agent Governance

No agent runs until approved. The agent and its privilege are two separate decisions, each on a 72-hour grant that auto-expires.

CRYPTO

Identity Registry

A cryptographically-verified registry of every agent identity and the device it runs on — a credential can't be replayed from somewhere it doesn't belong.

Attack Path Analysis

Graph-based reachability across the fleet: which exfil-capable, vulnerable agents sit on a path to a crown-jewel device — recomputed fresh, never stale.

Find & fix exposure

03 →

Vulnerability Management

Every CVE the fleet carries, per endpoint and per agent, tracked to resolution.

Virtual Patching

Mitigate a live vulnerability before a real patch ships — scoped safely to the exact process, never a blunt kill-by-name.

Secure Configuration

Audit endpoint configuration against a secure baseline, at fleet scale, from a CSV your team already maintains.

Prove & report

03 →
CHAIN

Compliance Ledger

A tamper-evident audit chain of every governance decision — built to survive an auditor's question, not just a dashboard glance.

RBI

MRM Report

Security-controls reporting mapped to RBI's model risk management framework — board-ready, for regulated enterprises.

Model Review Center

A registry and review workflow for every AI model in use — validator independence enforced, not just requested.

Ship & verify

02 →

Code / Shift-Left

Scan AI-generated code before it merges — secret leaks, red-team eval suites, OWASP-mapped findings.

Coverage & Validation

See exactly what's protected where, per surface and group — and prove it holds with a built-in red-team catalog.

03 Swarm Intelligence

An AI that learns your enterprise — and belongs to you.

The giants rent you someone else's model and meter your prompts through it. Statefold gives you your own: the Hive Mind, a small language model exclusive to your tenant. Swarm Intelligence is how it learns — continuously, from how your people actually use AI, entirely inside your perimeter. It flags what's genuinely novel by the actual wording, not just a rare graph relationship. No external LLM, ever — and your data never trains anyone else's model.

Yours, outright

The model — and its weights — belong to your tenant. Not a seat on someone else's platform.

Private by construction

It learns inside your perimeter, from your signal alone. Nothing is shipped out to be modelled.

Always sharpening

Every release passes a golden-suite efficacy gate — it only ships if it holds or improves.

Sees the unusual

Semantic novelty detection flags AI activity that reads unlike anything your fleet has produced before — the moment it appears.

04 The Hive Mind

An enterprise memory that never fakes an answer.

Every prompt and question. Every answer, code generation and MCP query. Every vulnerability, virtual patch and model review. It builds a real knowledge substrate — redacted before it's ever stored — and answers in plain language: a verified fact when one exists, a hybrid semantic search across the corpus when it doesn't, or an honest "I don't have enough evidence" rather than a guess.

  • Verified queries first — a provably-correct answer, or none at all
  • Every citation resolves to its real source row — click to prove it
  • A golden-suite efficacy gate must pass before any capability ships
PromptsAnswersCodeMCP queries VulnerabilitiesVirtual patchesModel reviews TokensBillingLicensesAlertsLogs
Ask the Hive Mind
I am the Hive Mind — your enterprise's own model. Every answer below is planned, verified, and calibrated before it's shown. Ask me about usage, billing, licenses, vulnerabilities, exfil-capable agents, prompts, code, MCP, alerts — or who runs what.
Deterministic demo · no external LLM · nothing leaves the box

AI is reached from every surface on a machine. The network sees a slice. The browser sees a tab. The endpoint — down to the kernel — sees all of it — and can act before data ever leaves. That's the only place AI security can truly live.

— the Statefold thesis · Secure your AI stack
05 Built to be trusted

Powerful by design. Quiet by default.

No LLM dependency

Detection, policy and governance are decided on-box — never an external model in the trust path. The Hive Mind you grow stays private to your tenant.

Enforced before-send

The endpoint redacts and blocks before data leaves — at a point no network gateway or browser plugin can reach.

Kernel-level, not app-level

Network policy enforces at the Windows Filtering Platform — a layer no proxy bypass or browser extension can route around.

Offline-safe

Fleet sync is additive. Disconnect the endpoint and protection continues — never a dependency for safety.

Agent & privilege kill

An agent runs only if it and the privilege it seeks are both approved. Otherwise it's halted and killed.

Multi-tenant isolation

One console, many isolated client enterprises — separate fleets, policy, ledger and Hive Mind. Built for MSSPs and global org boundaries.

06 How it works

Five moves to AI under control.

  1. 01

    Enroll

    Drop the light agent on endpoints; it self-registers to the console with a scoped, tenant-bound token.

  2. 02

    Observe

    Every AI surface is discovered and classified, attributed to a user, endpoint and privilege.

  3. 03

    Govern

    Approve agents and privileges separately; policy enforces at the kernel, before send.

  4. 04

    Ask

    The Hive Mind remembers it all. Ask in plain language; get a verified answer or an honest "I don't know."

  5. 05

    Teach

    The Swarm teaches your Hive Mind continuously as the fleet works — exclusive to your tenant, gated on every release.

07 Built for practitioners

Who runs Statefold day to day.

One console, three very different mornings.

Security & SOC leadership

See it, block it, before-send.

Every AI touchpoint across the fleet, the moment it happens — enforced at the kernel, not after the fact.

  • Kernel Enforcement
  • Vulnerability Management & Virtual Patching
  • Attack Path Analysis
Compliance & risk teams

Answer the auditor in the console.

Board-ready, RBI-mapped model-risk reporting and a tamper-evident ledger — not a spreadsheet reconstructed after the fact.

  • MRM / RBI Report
  • Compliance Ledger
  • Model Review Center
Platform & AI governance

Approve, then ask.

Approve every agent and privilege separately, govern which models are in use, and ask the Hive Mind anything — grounded, verified, or an honest "I don't know."

  • AI Agent Governance
  • Identity Registry
  • Hive Mind
Secure your AI stack

Bring your AI under control.

See Statefold discover, enforce at the kernel, govern identity and risk, prove compliance, and learn — across your fleet, before it ships.