endear.ai
Agent Security · Early Access

Secure execution layer
for AI agents in the enterprise.

Aether sits between your agents and the world — enforcing policies on every tool call, logging every decision, and escalating to humans when the stakes are high.

Enterprise compliance team

AI agents in production are ungoverned by default.

Every agent framework ships with capability. None ship with policy enforcement, audit trails, or human oversight. That gap is your compliance risk.

Agents act without authorization

Your AI agent reads a database it should not touch, sends an email without approval, or calls an external API unchecked. No one knew until the damage was done.

No audit trail for compliance

Your auditor asks what the agent did last Tuesday. ISO 42001 and SOC 2 require more than a log file.

Human oversight is manual chaos

High-risk steps get reviewed by whoever happens to be watching Slack. No SLA, no routing, no escalation path.

Everything your agents need. Nothing they should not have.

Six capabilities, one policy boundary.

🛡️

Policy Engine

Every tool call, every data access, every agent action evaluated against your Open Policy Agent rules before execution. Deny, allow, or escalate in under 15ms.

🔌

MCP Tool Control

Agents connect to the outside world through Model Context Protocol servers. Aether sits between agent and tool, enforcing policy on every single invocation.

📋

Immutable Audit Trail

Every workflow, every policy decision, every agent action logged to an append-only structured audit log. Compliance evidence generated continuously, automatically.

👤

Human-in-the-Loop

High-risk steps pause for human review before proceeding. Escalation routes to your team via Slack, email, or webhook. The agent waits.

🔄

Workflow Orchestration

Durable, multi-step agent workflows powered by Temporal. Steps run in sequence or parallel. Failures retry automatically. State survives restarts.

🏢

Multi-Tenant Isolation

Per-tenant MCP tool namespacing, isolated policy sets, and separate audit streams. Run dozens of customers on one deployment without data bleed.

Five steps. Zero unauthorized actions.

From agent tool call to audit log entry — in under 15ms.

1

Agent emits a tool_call — read database, send email, call API.

2

Aether's proxy captures the request before it reaches the tool.

3

Policy engine checks agent identity, tenant, tool, and context.

4

Approved calls proceed. Denied calls error. Flagged calls pause for human review.

5

Every decision — allow or deny — written to the immutable audit log.

aether · audit-log · live
09:14:31Z INFO event="workflow_start" workflow_id="wf_9c3b" agent_id="agt_7f2a"
09:14:32Z DENY event="policy_decision" tool="postgres.write" reason="write_restricted_outside_business_hours"
09:14:33Z INFO event="step_blocked" on_deny="escalate" signal="human_review_required"
09:14:35Z ALLOW event="policy_decision" tool="postgres.read" allowed=true latency_ms=12
09:14:36Z INFO event="workflow_complete" steps_completed=3 steps_blocked=1 duration_ms=4120

The frameworks your auditors already know.

Aether maps directly to AI governance frameworks.

ISO 42001Aligned

AI management system standard. Audit trail, policy engine, and human-in-loop controls map directly.

NIST AI RMFAligned

Govern, Map, Measure, and Manage functions covered by Aether's architecture.

HIPAAAligned

PHI never leaves the enclave. Agent access to clinical data requires explicit policy allow.

SOC 2 Type IIAligned

Immutable audit log, least-privilege access, automated incident escalation. Control evidence generated continuously.

Start secure. Scale with confidence.

All tiers include the full policy engine, audit trail, and Keycloak integration.

No security features paywalled.

Team

Starter

$1,800/month

Up to 5 agent types · 10K workflow runs/mo

  • Policy Engine
  • Full Audit Trail
  • Keycloak Integration
  • Email Support
Contact Sales
Most Popular

Platform

Professional

$4,500/month

Unlimited agent types · 100K workflow runs/mo

  • Policy Sync
  • Full Audit Trail
  • Keycloak + SSO/SAML
  • Self-hosted Langfuse
  • Human-in-Loop Controls
  • Priority Support
Get Started

Regulated

Enterprise

$9,500/month

Unlimited · Dedicated policy cluster · 99.9% SLA

  • ISO 42001 Control Mapping
  • NIST AI RMF Alignment
  • Air-gap / VPC Option
  • Compliance Report Exports
  • Dedicated Support Engineer
  • SLA + BAA Available
Contact Sales

On-Premise

Self-Hosted

Custom

Your data center · Your infrastructure · Custom SLA

  • Full Source Deployment
  • Air-Gapped Option
  • Your Keycloak Instance
  • White-Glove Setup
  • 24/7 Dedicated Support
  • Government / Defence Ready
Contact Sales

Your agents should have a paper trail.

Onboarding design partners in financial services, healthcare, and regulated SaaS — production by end of April 2026.