Centra
CENTRA · SECURITY

Give the agent reach.
Keep control of
the boundary.

Centra puts encryption, identity, permissions, approvals, and evidence around the agent so access remains deliberate and consequential actions remain answerable to you.

Product walkthroughAUTHORITY / POLICY
g Gideon / SettingsInteractive example
Personal workspaceSettings

Your workspace. Your preferences.

Control is enforced before execution.Spending limits, approval gates, and a global stop remain outside the agent's discretion.

The important limits live outside the prompt.

Wireframe-style operator working at a glowing technical workstation
CONTROLLED ENVIRONMENTTechnical reach is useful only when identity, authority, isolation, and evidence are enforced around it.
01

Durable state is encrypted

User state is protected by envelope encryption through Vault, scoped per user. Value-moving actions require one of two things: authority granted in advance, or a signed approval from you in the moment. There is no third path.

02

Approvals live in the execution model

Sensitive writes, external side effects, and financial actions stop and wait for a human. The gate is enforced in the execution model itself (the durable action lifecycle), not in a prompt. A clever instruction cannot talk its way past a gate that is not made of words.

03

Evidence, not performance

Every step an agent takes is written to a durable evidence log as it happens. Claims keep their provenance, and finished work carries the tool activity, checkpoints, and verification needed to tell a convincing answer from completed work.

04

Gideon receives one private environment per user

Each Gideon user gets a dedicated agent environment and a durable state boundary. Workmates uses a separate account-isolated model in which that user's teammates share one computer; access on that computer is available to all of that user's Workmates.

What leaves the system, and what never does.

01

Information filters

Agent outputs pass through filters that scrub internal configuration and secrets before anything reaches a user or a tool. What the platform knows about itself stays inside the platform.

02

Independent verification

Evidence-sensitive review stays separate from the claim being reviewed. Unproven work cannot turn itself into verified completion merely by sounding confident.

03

Memory holds no secrets

Agent memory stores your work and your preferences, never credentials. Model-provider access and metering sit at the gateway, so provider secrets never need to live inside a user's environment.

Publish the framework. Earn the certification.

Our AML/KYC policy, EU AI Act posture, compliance statement, and regulatory overview are public. Product availability does not imply a certification we have not earned.

How we evaluate safety, govern agent behavior, and report on both lives in the transparency hub.

Visit the hub
Controls we live with.

Tell us which data, account, action, or approval boundary matters to your work. We will explain how the current product handles it.