Skip to main content

New: Malicious MCP server caught in the wild!

Innovation vs. exposure

You are rolling out AI across the company to cut cost and increase speed. Hidden risk, inconsistent controls, and security pushback threaten the timeline. Knostic lets you deploy agents in days with controls that scale.

Critical High Medium by Dashboard Inventory Alerts Shadow AI Agents Activity Policies AI AppSec Users Security Groups Settings Audit Logs Attack Demonstrations Get Started Dashboard Security Overview for Knostic Knostic Organization General Usage A high-level view of organization-wide alerts, coverage, and MCP usage. Top Alerts TitleSeverityScoreUsers Malicious package 88 4 Destructive command 68 7 Prompt injection 65 7 Unapproved MCP server 60 5 Alerts Last 7 days Total: 75 18 10 5 0 Sep 30, 2026 Oct 1, 2026 Oct 2, 2026 Oct 3, 2026 Oct 4, 2026 Oct 5, 2026 Oct 6, 2026 Latest Alerts TitleSeverityDescriptionLast Seen Shadow AIextension An unsanctioned AI extension wasinstalled in VS Code. October 6, 2026 at04:17:53 UTC Unpinned MCPserver An MCP server runs from anunpinned, mutable version. October 6, 2026 at04:12:33 UTC Secret detectedin chat content An API key was pasted into anagent chat and sent to the model. October 6, 2026 at04:00:09 UTC Auto-approveenabled Agent tool calls are runningwithout human approval. October 6, 2026 at03:49:25 UTC Rule filechanged .cursorrules changed outside ofcode review. October 6, 2026 at03:40:04 UTC Kirin User Coverage Over Time Total Users 1544 Active Users 1470 Active Users Total Users Last 30 days Policies Coverage 89% Detection Policies Detects active attacks, malicious content, and security threats. These policies are enabled by default to provide immediate protection. 8 enabled out of 9 100% AI Agent Instructions Your rules for how AI coding agents should behave. Kirin audits instruction files (such as CLAUDE.md and .cursorrules) against this catalog and reports… 58 enabled out of 60 100% Allow/Block Lists Manage Allow and Block lists. 2 enabled out of 2 Top MCP Servers by Usage atlassian 568 notion 528 figma 485 slack 434 postgres 136

Adoption stalls on uncertainty, not on technology.

Every team wants agents. Security wants assurance. Knostic gives both: a clear inventory of what is in use, one policy that applies everywhere, and a dashboard that shows adoption, risk, and coverage side by side.

How Knostic accelerates safe rollouts

Adoption you can see

Before Knostic

Agents and plugins spread through every department. Nobody can report what is deployed, let alone what it costs or protects.

After Knostic

A single inventory of agents, models, and tools by team, with adoption and risk trends over time.

Policy once, enforced everywhere

Before Knostic

Each tool, each team, its own configuration. Security reviews every rollout from scratch.

After Knostic

One policy set, applied to every supported agent, so a new team or tool inherits the controls on day one.

Velocity with guardrails

Before Knostic

AI-generated code ships with vulnerabilities and bad dependencies. Rework eats the productivity gain.

After Knostic

Agents follow your coding standards and threat-model first. OpenAnt finds what slips through.

Key capabilities

Adoption and risk dashboard

Who is using which agents, where coverage is, and what has been prevented.

Policy once, everywhere

Set controls centrally and apply them across every supported agent and team.

Days, not quarters

Kirin installs inside the agents already in use. No new infrastructure.

Vetted ecosystem

AgentMesh verdicts on skills, MCP servers, and extensions, so teams build on trusted components.

Works with your stack

Extends SIEM, DLP, DSPM, and Purview into AI workflows.

Reporting

Evidence for the board, the auditor, and the budget review.

Frequently asked questions

Hours to discovery data, weeks to enforced policy. Kirin ships as a plugin or extension in agents developers already run.

Cursor, Claude Code, GitHub Copilot, Windsurf, Codex, JetBrains, Devin Desktop, Gemini CLI, and Claude Cowork.

The point is the opposite. With enforced guardrails and evidence, security can approve agents it would otherwise block.

Kirin is free for individual developers and small teams, per-user for growing teams, and custom for the enterprise. See pricing for details.