For small teams

AI leverage,
without the risk.

Your lean team is putting agents to work, and the keys are starting to live in too many places. P1 Halo keeps shared model keys in one vault, puts role-based access between the wrong hands and the wrong action, and rolls every run into one audit trail you can hand to anyone who asks.

The question you can't answer

“What are our agents actually doing?”

Three to five engineers, each wiring agents into their own workflow. The keys are in everyone's .env, the runs happen on laptops you don't see, and the spend shows up as one lump on a provider invoice. As the lead, you own the answer to a question you currently can't answer — and so does the company.

01

Keys in too many hands SHARED · UNROTATED

One model key, copied into five repos and a Slack thread, is five places it can leak and one place you can't cleanly rotate it. The moment a contributor rolls off, you're not sure which keys went with them — or whether they still work.

02

No line between run and approve NO SEPARATION OF DUTIES

When everyone is an admin, any one engineer can launch a destructive run and wave it through alone. That's fine until it isn't — and when a customer asks how a change got made, "we trust each other" is not a control you can show them.

03

No single record of what happened SCATTERED LOGS

Each dev's runs live in their own terminal scrollback. There's no one place that says who ran what, against which repo, for how much — so the honest answer to a customer, partner, or your own CEO is a shrug.

What you get

The leverage, minus the loose ends.

You don't have a security team to babysit this — so the controls a security team would want are built into the platform, working the moment you invite your first teammate.

Shared keys, one vault

Your team's model keys live in a single libsodium-encrypted vault — never copied into containers, never logged, never pasted into a Slack thread. The sole-egress broker holds them and injects at call time. Rotate in one place.

BYOK VAULT · KEY NEVER ENTERS

Roles & separation of duties

Owner, reviewer, viewer — each role sees what it should and can do only what it should. Destructive actions require separation of duties, so no single seat can both run and approve. Seat caps keep the org honest: Solo 1, Team 5, Business 20.

RBAC · UP TO 5 SEATS

One audit trail for the org

Every run from every teammate signs into one Ed25519 hash-chained log. When a customer, partner or auditor asks what your agents did, you export it and they re-verify it offline — one answer for the whole company.

TAMPER-EVIDENT
A lean team can move fast with agents and keep its hands on the wheel — shared keys in one vault, roles between people and risk, a per-org budget hard-stop, and one signed chain that answers for the whole org. Control and proof, without hiring a security team to get them.
— Governance that scales with a small team

Give the team an answer
to “what are our agents doing?”

Team is $544/mo for up to 5 seats, BYOK — one vault, role-based access, separation of duties, an org budget hard-stop, and one signed audit chain the whole team rolls into. Invite your engineers and the next time someone asks what your agents did, you export the proof instead of guessing.