Skip to content
Private preview The Kodeus SDK and demo app are not public yet. Get early access
Kodeus
Enterprise

Agents your security team
will actually approve

Runs in your VPC, against your database. Every action attributable, every risky one gated, every run traced.

One governed action policy · identity · trace
01 Application proposes issue refund · $2,480 Autonomous
02 Policy intercepts the turn one of five seams · guardrails evaluated Governed
03 Human approval gate finance-lead · awaiting Held
04 Execute identity from a verified credential, per-user keys Scoped
05 Recorded structured logs, OpenTelemetry trace, execution history Traced

How your data is protected

Every request carries an identity derived from a verified credential, never the request body.

DATA BOUNDARY

Runtime where your data lives

Run the self-hostable runtime inside your own environment, or take managed hosting. Either way, conversations, user data and credentials stay inside the boundary you deploy into.

TENANCY

Isolation as an architectural property

Organizations, users, applications, MCP servers, databases, secrets and environments are isolated by tenant, enforced with per-user credential encryption.

IDENTITY

Authority, not just authentication

Encrypted credential vaults, API-key issuance, rotation and revocation, and AES-256-GCM encryption with per-user keys, so every action is attributable to an approved identity.

COST

Predictable economics

Usage is metered at the execution level, with per-tenant limits and usage-limit guardrails so one workload cannot exhaust shared capacity.

Security and governance controls

The question is never whether an agent can act. It is whether you can explain what it did.

Now shipping Maturing deepening
Review it with your security team
  1. Turn-level policy Now

    A policy mechanism intercepts work at five seams and can monitor, redact, block, escalate or require human approval.

  2. Forty-five built-in guardrails Now

    Shipped with the platform and enabled per application by policy. No bespoke safety layer to write.

  3. Human-in-the-loop approvals Now

    Named actions hold at an approval gate before execution: refunds, deletions, transfers, publishes.

  4. Structured tracing Now

    Structured logs, OpenTelemetry traces, per-call latency decomposition, token and cache usage, retrievable execution histories.

  5. Role-based access control Maturing

    Deepening the governance surface beyond tenant isolation and per-user credential encryption.

  6. Per-action audit, replay and cost analytics Maturing

    Re-run a workflow against the same conditions, and attribute spend to applications, teams and individual runs.

Optional module

Verifiable execution (optional add-on)

Enable Verifiable Execution and selected records are anchored to a cryptographic ledger, proof a counterparty can check without trusting the operator. The rest of the deployment is unchanged.

How modules attach

Where you can run it

Self-host the runtime in your own environment, or let us host it. Same platform, same controls.

Deployment model Primary value Status
Business workspace Natural-language creation, managed integrations, shared policies. Now
Enterprise deployment Dedicated environments, tenant isolation, approvals, observability. Now
Infrastructure integration CLI and SDK that embed Kodeus operating services inside other products. Now
Public ecosystem Developer-built applications, capability marketplace, usage-based monetization. Maturing

Deploy applications your security team signs off on

Bring a workflow that matters and we will walk through the identity model, governance boundary and deployment shape with your team.