Private by design.
Yours to control.
AI governance in your environment, on your terms. Minimal data capture. Clear accountability for every decision.
How machines authenticate and where policy runs.
Three things to check first.
- 01mTLS agent identity
Each machine proves its identity
Each enrolled agent creates its own key pair and connects to the control plane over mutual TLS. The private key never leaves the machine.
- 02Local policy enforcement
Policy is checked where the action happens
Supported file, shell and MCP actions are evaluated on the enrolled machine, before the action completes.
- 03Data minimisation by default
Capture is minimal by default
File content is not stored. Prompt capture is off by default; opted-in prompt content is encrypted at ingest.
Your infrastructure. A clear trust boundary.
Local policy enforcement
Supported actions are checked where they happen. The private key stays here.
Private control plane
Manage policies and review decision records inside your environment.
- Private keys
- Stay on your machine
- File content
- Never stored
- Prompt capture
- Off by default
One dedicated deployment.
In the environment you already govern.
The control plane is installed single-tenant into infrastructure you own. Choose the environment your security team already reviews, and Tracelet lands inside the compliance boundary that environment already has.
AWS
Your AWS account
Google Cloud
Your Google Cloud project
Azure
Your Azure subscription
On premises
Your data centre
- Single tenant. Dedicated to your organisation.
- Inside the compliance boundary you already have. Because Tracelet runs in your account, project, subscription or data centre, it falls within the controls, network perimeter and audit scope your team already maintains there, under SOC 2, ISO 27001, HIPAA or whichever framework applies to that environment. No data leaves your boundary to reach a vendor, so there is no new external data flow to document and no separate vendor system to bring into scope.
What a reviewer sees for one decision.
Action, policy, outcome and owner context, kept together in one record. Tracelet is not presenting a certification; documented status as of 11 September 2026:
- Action
- Read ~/.aws/credentials
- Tool
- Claude Code
- Team
- Platform engineering
- Machine
- macOS · enrolled
- Policy
- Production credential boundary
- Verdict
- Held · access prevented
- Attached
- Policy evaluation and action context
- Review status
- Record complete
See a policy decision on the machine.
The agent checks a planned action against your policy and records the decision before anything runs. Illustrative example.
Waiting for the developer’s request…
$ mcp connect https://unknown-mcp.example/ssethen: write → prod.customersCapture, retention and access are your settings, not ours.
- 01Minimal capture by default
Control what is captured
Prompt content is not stored by default. File content is not stored.
- 02Configurable retention
Control how long it is kept
Retention is set by data class and agreed during the security review.
- 03Role-scoped record access
Control who can see it
Record access is scoped to the people who need it, and is itself reviewable.
What is captured, and what is not.
Tracelet records activity and decision context. File content is not stored, and prompt capture is off by default.
AI activityAction reaches the policy boundary
Decision contextActor, tool, time and policy result
Decision recordContext stays with the decision
Bring the security, audit and privacy questions your teams will ask.
We review these four with your security team before a partnership starts, along with your exposure from unsanctioned AI tools (see the State of Shadow AI report). Questions: tracelet@insighture.com.
Become a design partner- 01
Deployment boundary and data residency
- 02
Machine identity, enrolment and access model
- 03
Policy coverage for your tools and actions
- 04
Capture, retention and record access