Your board will ask which AI agents are running. Can you answer?
Most enterprises cannot. The agents nobody owns are still holding credentials, touching customer data, and spending money.
A finding with a dollar figure attached.
Governance findings get deferred. Findings with money attached get funded.
It cannot leak what it never sends.
The four objections your security team will raise, answered before you forward this to them.
No egress
Discovery runs inside your VPC. Your agent inventory, topology, and spend data are never transmitted to us.
No write access
Read-only by construction. It holds no credentials to your systems and takes no action on them.
No agent installed
Reads from sources you already run — Kubernetes API, cloud inventory, provider billing, existing endpoint telemetry.
Open format
The record format and verifier are published. Your team can confirm what it does without trusting our description of it.
From nothing to a board-ready answer.
Point it at your environment
Read-only credentials to inventory sources you already run. No install, no host agent.
Get the inventory
Every agent — containers, scheduled jobs, serverless, workflows, robots, credential-holding scripts — with owner, purpose, data access, uptime, and spend.
See what cannot prove itself
Agents with no verifiable record are listed as unattested. That list is the finding, and usually the surprise.
Take it to the committee
Export the findings report with exposure, recommended actions, and the annualized dollars each one frees up.
Discovery observes. It cannot attest.
Attestation requires signing with a key unavailable to the platform running the agent. If the discovery tool held that key, the platform would be certifying its own agents — the exact failure the index exists to expose.
It is an architectural boundary, not a feature gate. Everything discovery can honestly do stays free.
Discovery is free. Proof is licensed.
Not a trial that expires.
Discovery — free
Full inventory across environments. Owner, purpose, data access, uptime. Token spend per agent, attested or not. Verify existing records. Findings report export.
Attestation — $4 / agent / mo
Issue creation records. Countersigned action history. Adopt existing agents into record. Continuous verification. SIEM export.
Attestation + Control — $9 / agent / mo
Everything above, plus break-glass quarantine and revocation, responder keys with dual approval, expiring holds, and the freshness policy engine.
TokenMark™ — 0.9% of spend managed
Per-agent budgets and hard stops. Metering against the attested record. Anomaly holds. Monthly savings statement.
Straight answers.
Then cap what they spend.
Once agents can prove what they did, TokenMark™ meters every charge against that record — per-agent budgets, hard stops, and a monthly savings statement you can check against your provider invoices.