Cortex
CortexAgent Security & Governance

See the AI attack surface. Govern the agents behind it.

Connect supported human, agent, model, and MCP activity with accountable ownership, policy state, and the managed path where a control can operate.

MCP Servers

GitHub MCPActive
OwnerPlatform engPolicyRead-only PRsLast seen2m ago
Slack MCPActive
OwnerSupport opsPolicyChannel-scopedLast seennow
Notion MCPReview
OwnerProductPolicyWorkspace R/WLast seen1h ago
Jira MCPActive
OwnerEng opsPolicyTicket writeLast seen8m ago
Supported activityAvailable: Supported capture paths

Start with evidence from the AI work you can observe.

Cortex records provider, model, device, user, process, harness, and tool signals on supported capture paths. Security teams can review policy-relevant activity without claiming an inline block.

  • Identity, provider, model, and harness context
  • Policy-relevant signals with explicit blind spots
  • Searchable audit evidence for supported activity
Supported activity signals
Prompt contains API key + .env fileObserved
People
Harness
Cursor
Model
GPT-4o
2m ago
Matched signal · Secrets · API keys & .envViaCursor
Full customer contract pasted for summaryReview
People
Harness
ChatGPT
Model
Claude Sonnet
11m ago
Needs review · Contracts · customer termsViaChatGPT
Summarize these public release notesAdmitted
People
Harness
Slack MCP
Model
cortex-triage-v3
18m ago
No policy match · No policy matchViaSlack
Draft LOI language for target Acme acquisitionObserved
People
Harness
Claude
Model
GPT-4o
34m ago
Matched signal · Strategic M&A · deal room onlyViaClaude
Rewrite this performance review for director levelObserved
People
Harness
ChatGPT
Model
Claude Sonnet
1h ago
Matched signal · HR reviews · comp & performanceViaChatGPT
Attack-surface inventoryRoadmap: Productized inventory

Put agent identity, ownership, and MCP access in one review.

Cortex already records useful agent and tool signals on supported traffic. The productized inventory shown here is Roadmap and will add coverage confidence, owner, approval state, last seen, and blind spots.

  • Human sponsor and non-human identity
  • MCP server and tool relationships
  • Coverage confidence and explicit blind spots
Agent & MCP inventory
GitHub MCPActive
OwnerPlatform engPolicyRead-only PRsLast seen2m ago
Slack MCPActive
OwnerSupport opsPolicyChannel-scopedLast seennow
Notion MCPReview
OwnerProductPolicyWorkspace R/WLast seen1h ago
Jira MCPActive
OwnerEng opsPolicyTicket writeLast seen8m ago
Managed-path controlsConfiguration-gated: Configured customer route

Enforce only where Cortex owns the decision point.

Inline policy requires the request or execution to traverse a configured Cortex-controlled enforcement point. Current available controls include organization RPM admission and allow or deny policy for supported Cortex-initiated MCP calls.

  • Named deployment prerequisite
  • Named request or execution path
  • Decision evidence attached to the control
Configured policy boundary
Organization request admissionCortex gateway request volume
Configured
AuthorM. Chen · SecurityLast decision2m agoDecisions47× today
Agent identities
+1 agent
Human actors
Org RPM · configured ceiling
Approved MCP server accessCortex-initiated GitHub MCP calls
Configured
AuthorR. Okonkwo · LegalLast decision18m agoDecisions12× today
Agent identities
Human actors
NK
MCP · allow approved server
Unapproved MCP server accessCortex-initiated external MCP calls
Configured
AuthorD. Liu · Corp devLast decision34m agoDecisions3× today
Agent identities
Human actors
MCP · deny outside allowlist
Supported activity reviewObserved browser, IDE, and gateway signals
Active
AuthorK. Diaz · ComplianceLast decision1h agoDecisions9× today
Agent identities
+2 agents
Human actors
HRJL
Audit · record for review
Policy digital twinRoadmap: Policy simulation

Audit mode before enforce mode.

The Roadmap policy simulation shown here replays a candidate rule against historical activity, exposes affected workflows and exceptions, and reports what Would block in enforce mode before a policy reaches a supported managed path.

  • Historical replay and affected workflows
  • Exception review before enforcement
  • Would block in enforce mode
Policy simulation
ContractsEditing
Block any prompt containing customer contract terms
128queries tested3would block0false positive
SimulateTeamLLegalAccessOrg-wide
More policies

Govern the managed paths your agents depend on.

Review supported activity, agent and MCP relationships, current enforcement points, and the Roadmap from audit mode to managed enforcement.