Eight modules. One governance operating layer.

Argorix turns AI security and governance into a continuous operating model: discover what AI you have, watch how it behaves, govern it against policy, enforce controls at runtime, and validate it with adversarial testing.

01Discovery

ARGORIX Sentinel

Shadow AI discovery & AI inventory

Find the AI you don’t know about. Sentinel maps unmanaged AI use across repositories, applications, browser activity, pipelines, and teams — then builds the real operating inventory.

  • CI/CD discovery for GitHub Actions, GitLab CI, Bitbucket, and Azure DevOps
  • Inventory of AI systems, owners, models, prompts, datasets, and providers
  • Auto Discover, review queue, and triage from shadow repo to declared inventory
See use case
sentinel · discovery37 Shadow AI
Systems
142
Unmanaged
37
Owners
28
Repositories92%
SaaS & Browser74%
Pipelines81%
Agents / Tools63%
observatory · data-flowsWatch
monitoring prompt → model → output paths
pii_detected: 3 prompts redacted
egress: external_api blocked ×6
exposure score: 24 / low-medium
Flows
5.1k
PII paths
12
Redacted
418
02Monitoring

ARGORIX Observatory

Browser DLP for AI usage

See where sensitive information moves. Observatory is browser-level DLP for AI: a managed extension traces users, installations, and sensitive events — without sending full prompts by default.

  • Blocked, warned, redacted, and bypassed events per user and domain
  • Curated AI app catalog: approve or block tools before anyone uses them
  • Risky-usage pattern alerts routed to owners
See use case
03Governance

ARGORIX Control

Policy, compliance & evidence

Turn discovery into governance. Control aligns AI usage with policies, risk decisions, control frameworks, ownership, remediation, and audit-ready evidence.

  • Policy Builder: manual templates or AI drafts generated from your documents
  • Target posture vs runtime result, tracked per control with owners and due dates
  • Framework coverage for EU AI Act, ISO 42001, NIST AI RMF, and OWASP LLM Top 10
See use case
control · governanceAudit-ready
Policy coverage86%
Controls mapped78%
Evidence linked71%
Remediation SLA64%
Open issues
19
Evidence
Ready
Frameworks
6
guardrails · runtimeEnforcing
policy_check: tool_call → allow
prompt_injection: blocked ×14
unsafe_output: quarantined ×3
approval_required: high_risk_action
enforcement latency: 38ms
Blocked
1,204
Approvals
62
Latency
38ms
04Enforcement

ARGORIX Guardrails

Runtime controls for classic & agentic AI

Stop unsafe behavior as it happens. Guardrails enforces runtime policy decisions to prevent prompt injection, unsafe outputs, data leakage, and non-compliant AI actions.

  • Five surfaces: Classic, Agent Guardrails, Guardrails Log, LiteLLM gateway, AI Workbench
  • Prompt-injection, unsafe-output, and data-leak prevention
  • Python and Node SDKs, monitor/enforce modes, and per-agent step, tool, and action controls
See use case
05Validation

ARGORIX AI Red Team

Adversarial validation & offensive testing

Prove your controls actually work. AI Red Team runs adversarial validation for prompt injection, instruction leakage, data exposure, model manipulation, and compliance failures.

  • Attack libraries for prompt injection and instruction leakage
  • Red Team Live: watch attack sessions in an isolated per-tenant browser VM
  • CI gates (strict / balanced / observe) and findings that flow into remediation + evidence
See use case
redteam · validation11 probes
Prompt injectionPass
Instruction leak2 found
Data exposurePass
Model manipulation1 found
Probes
11
Findings
3
Validated
28
evidence-hub · integritySHA-256
evidence: 214 objects · files · urls · attestations
integrity: 198 verified · 0 tampered
review: 12 in review · 3 expiring
audit pack exported → ISO 42001
Objects
214
Verified
198
Packs
12
06Proof

ARGORIX Evidence Hub

Evidence objects, integrity & audit packs

Stop rebuilding proof for every audit. Evidence Hub stores files, URLs, notes, snapshots, reports, and attestations with review states, retention, and cryptographic integrity.

  • SHA-256 integrity verification: verified, tampered, or not found — at a glance
  • Audit packs (JSON/ZIP) with metadata, hashes, and timeline per control
  • Built-in control catalog: ISO 42001, NIST AI RMF, OWASP LLM & Agentic Top 10, SOC 2
See use case
07Endpoints

ARGORIX CodeGuard

Workstation agent for the vibe-coding era

Developers paste secrets into AI tools every day. CodeGuard enrolls workstations, distributes managed policy packs, and records every redaction and restore event at the endpoint.

  • Windows, macOS, and Linux agents with one-liner enrollment per tenant
  • Managed, optional, and preview policy packs with staged rollout (pilot → expansion)
  • Local proxy posture scoring plus a full redaction / restore / block audit trail
See use case
codeguard · endpoints435 agents
installations: 412 online · 23 stale
policy packs: managed ×3 · preview ×1
redactions 30d: 1,842 · restores 67
posture score: 92 / proxy + ca ok
Endpoints
435
Redactions
1.8k
Posture
92
intelligence · threat-intelDossiers
Trust index (median)71
Jurisdiction risk42%
Security posture26%
Median AIVSS (agents)6.3
Providers
64
Agents
128
Watchlist
9
08Threat Intel

ARGORIX Intelligence

Model & agent threat intelligence

Know who you are trusting before you integrate. Intelligence scores LLM providers by jurisdiction, transparency, and security posture — and third-party AI agents against OWASP AIVSS and the MAESTRO 7-layer threat model.

  • Provider dossiers: risk, trust, adoption, compliance, and jurisdiction indexes
  • Agent directory scored with AIVSS = (CVSS base + AARS) × mitigation factor
  • Watchlists and benchmarks that feed model choice and procurement decisions
See use case

Discover → Monitor → Govern → Enforce → Validate → Prove

Each module feeds the next. Findings become policy, policy becomes runtime enforcement, enforcement becomes evidence, and red-team results loop back into remediation.

Built for security teams

Discovery, runtime enforcement, and offensive validation in one place — no more spreadsheets chasing Shadow AI.

Built for compliance

Reusable evidence, control mappings, and traceable remediation keep audits fast and defensible.

Built for product & AI teams

Ship classic and agentic AI applications with runtime guardrails that don’t slow delivery down.

Everything the modules produce, in one console

Modules do the work; the workspace runs the program: a board-ready dashboard, a living inventory with AI-BOM, one risk inbox, and reports your auditors can keep.

Dashboard

Operations, runtime telemetry, and an executive view built for steering committees and board packs.

Inventory & AI-BOM

Repositories, AI applications, models, metaprompts — plus a per-app AI-BOM, application graph, and attack-surface analyzer.

Issues — one risk inbox

Unified triage across code scans, pipelines, runtime guardrails, and red team — with one-click Jira tickets.

Reports

Executive, technical, or full-package PDFs with watermarks, dual branding, and a history of every snapshot.

Integrations

GitHub, GitLab, Bitbucket, Azure DevOps; Jira, Slack, Teams, Google Chat; Splunk HEC, Google SecOps; SSO with Entra ID or OIDC.

SDKs & APIs

Python and Node guardrail SDKs, agent decorators, a LiteLLM guardrail provider, and runtime APIs for install, evaluate, and events.

Operationalize inventory, policy, runtime controls, and evidence — in one platform.
Get Argorix