Don’t trust the agent.
Verify it.
PerimeterOne LLC builds the governance layer for AI agents. Independent, veteran-owned, and built around one premise: don’t trust the agent, verify it.
Why we exist
The industry is racing to give AI agents real power: your repo, your shell, your APIs, your customers’ data. The tooling to contain that power, and to prove what an agent actually did, has lagged badly behind. Most “AI security” asks you to trust a model’s behavior, or a vendor’s dashboard. We don’t think that’s good enough for anyone who has to answer for what their agents do.
So we built P1 Halo from the other direction. Each agent runs in a sandbox with no route to the internet. A single broker is the only door out. It holds your keys, injects them at call time so they never enter the container, and policy-checks every call. Every prompt, tool call, and output signs into an Ed25519 hash-chained audit log you can re-verify offline, on your own machine, with no network and no trust in us. Tamper with one byte and verification fails.
That’s the whole idea: governance you don’t have to take on faith. We map the evidence to NIST 800-171 and CMMC controls so the same signed chain that protects a solo developer’s run can stand up in front of an auditor or an Authorizing Official. We’re plain about scope, too: CMMC is self-assessed, and SOC 2 Type II is targeted for Q3 2026, not yet attested.
PerimeterOne LLC is a real, registered, veteran-owned company, founder-built by someone who has carried responsibility for systems that had to hold up under scrutiny, with a background spanning security and government-contracting work. That history shapes the product: when you’ve had to answer for what a system did, you stop accepting “trust the dashboard” as an answer. We hold ourselves to the same bar we sell: we run our own governed agents in production, behind the same broker, the same sandbox, and the same signed chain we ship to you. We’re our own first customer, and we’d rather earn trust by handing you proof than asking for it.
Don’t trust the agent. Verify it. We’d rather hand you proof you can check than ask you to believe a claim you can’t.
The posture, plainly.
We’re an independent, veteran-owned company. We’re deliberate about what we claim. Here’s how we hold ourselves to it.
Independent & neutral
We don’t make the models. That’s the point. The thing being governed shouldn’t grade its own homework. We’re vendor-neutral by design, so the evidence answers to you, not to a model provider.
VETERAN-OWNEDEvidence over assertion
Every action is signed and re-verifiable offline with our open tool. We’d rather you check the proof than trust the pitch. The verifier runs on your machine, with no network.
RE-VERIFY OFFLINEHonest about scope
We’re plain about what’s shipped versus on the roadmap. CMMC is self-assessed; SOC 2 Type II is targeted for Q3 2026; NIST 800-171 controls are mapped. We say so on the page.
SHIPPED VS ROADMAPVerify,
don’t trust.
Start in your browser, run a sandboxed agent behind the broker, and export a signed audit log you can re-verify yourself, offline. BYOK, so you only pay your provider for tokens.