Skip to content

Every AI system, known, governed and provable.

Custos finds the AI your organization actually uses, applies your policies to every prompt, response and agent action, and keeps the evidence ready for auditors, regulators and records requests.

Custos AI posture dashboard showing 214 AI assets, 23 shadow AI apps, 11 high-risk systems, 87 percent control coverage, framework coverage bars, a risk heat map, 30 days of policy decisions and a needs-attention queue

For government agencies and regulated enterprises. Built for Microsoft 365, Purview and Entra ID environments.

10Integrated modules
11Framework packs, plus your own
1Control set, proven once across every framework
17Enterprise connector categories

You cannot govern what you cannot see.

Custos scans browsers, endpoints, SaaS, cloud accounts and API traffic continuously. Every AI tool, model, agent and API key it finds is attributed to a person and a department, then placed in one registry.

Custos discovered AI screen listing twelve AI applications with users, first seen date, data exposure and status, with a detail panel for an unreviewed meeting notes app showing departments, data reached and policy findings

Shadow AI, named

Generative AI in the browser, plugins inside approved SaaS, unsanctioned API keys in code. Each finding shows who used it and what data it could reach.

One registry of record

Applications, models, agents, vendors, datasets and use cases, each with a business owner, technical owner, risk tier, approval status and renewal date.

Relationships, mapped

See which agents call which models, which models touch which datasets, and which vendors sit behind them. Retire one asset and know what breaks.

Ten modules. One governance record.

Every module writes to the same registry, the same control set and the same audit trail. Start with discovery and add the rest as your program matures.

AI and shadow AI discovery

Continuous scanning across browsers, endpoints, SaaS, cloud and APIs, with every finding attributed to a user and department.

Used by Security, IT

  • Shadow AI detection
  • SaaS and generative AI discovery
  • Model, agent and API discovery
  • Browser and endpoint visibility
  • Cloud AI service discovery
  • Plugin and tool discovery
  • API key and credential discovery
  • New AI service alerts
  • User and department attribution
  • Data-source discovery

Policy that acts before the prompt is sent.

Guardrails inspect prompts, files, responses and tool calls in real time. You decide, per department, role or data type, whether Custos allows, coaches, redacts or blocks.

Prompt from a benefits caseworker to an external chatbot
Draft a letter to my client, SSN [SSN], explaining why her benefit renewal was delayed. She has [HEALTH]. Attached: [CONFIDENTIAL FILE REMOVED].
What Custos detected
  • Social Security numberPII
  • Diagnosis and medicationPHI
  • Case record from SharePointLabel: Confidential
  • Destination toolRestricted catalog
Sent with sensitive values maskedThe question still gets answered. The identifier, health details and labeled file never reach the external service.

Sensitive data

PII, PHI, payment data, financial records, source code, credentials and confidential documents.

Attacks on the model

Prompt injection, jailbreak attempts and unsafe content, in prompts and in uploaded files.

Outputs too

Responses are checked for leaked data and restricted content before they reach the user.

Redact, mask, tokenize

Keep the work moving without the sensitive values ever leaving your boundary.

Prove a control once. Satisfy every framework.

Custos maps each control to every requirement it satisfies. One piece of evidence, collected automatically and kept fresh, covers the same obligation across all your frameworks.

Common controls mapped across frameworks (example mapping). Select a row to see its reach.
ControlNIST AI RMFISO/IEC 42001ISO/IEC 27001NIST CSFSOC 2EU AI ActGDPR
AI system inventory
Risk assessment before deployment
Human oversight of high-risk use
Prompt and output logging
Sensitive data protection
Third-party AI vendor review
Incident response for AI events
Transparency to affected people
AI system inventorySelected control
6 of 7Frameworks satisfied by this control
1Evidence set, reused everywhere it applies
NIST AI RMFISO/IEC 42001ISO/IEC 27001NIST Cybersecurity FrameworkSOC 2EU AI ActGDPR and privacyGovernment AI policiesRecords retentionInternal AI standardsCustom frameworks

Agents act on their own. Custos sets the limits.

Each agent gets an identity, an owner, a permission set and approval thresholds. Every tool call is logged, drift is flagged, and one switch stops it everywhere.

Custos agent detail screen for a benefits intake agent showing tool permissions, a payment of 4,800 dollars held for supervisor approval, recent tool calls and behavior alerts

Registry and identity

Purpose, owner, risk rating, model and tool inventory for every agent.

Human in the loop

Approval points and transaction thresholds for consequential actions.

Behavior and drift

Alerts when an agent calls new tools, new data or a changed model.

Stop instantly

Suspend one agent or all agents of a type, with the action recorded.

Reconstruct any AI event, minute by minute.

Who asked, which model answered, what data was touched, what the policy decided and what happened next. Custos rebuilds the full sequence and preserves it as evidence.

Custos incident INC-1042 screen with a minute-by-minute timeline, the captured prompt with sensitive values highlighted, matched guardrail rules, corrective actions and preserved evidence with file hashes

Complete audit trail

Prompts, outputs, model and agent activity, tool calls, data access, approvals and configuration changes, timestamped and attributed. Tamper-resistant where you require it.

Records and eDiscovery

Retention schedules and labels for AI conversations, legal hold, public-records request search, chain of custody and defensible deletion.

Incident response

Automatic incidents from policy violations and leaks, an investigation workspace, root cause, corrective actions and post-incident review.

Know what AI costs, and what it returns.

Token, API, model, agent and license spend, allocated by department, application and use case. Set budgets, catch anomalies and reclaim licenses nobody uses.

Custos AI spend screen with quarterly spend, forecast, unused licenses and cost anomalies, a twelve-month stacked chart of license, token and agent spend against budget, and spend by department

Chargeback and showback

Allocate cost to the teams that incur it.

License optimization

Find inactive and underused Copilot and AI seats.

Adoption and ROI

Active users, time saved and value by use case.

Ask your governance program a question.

The built-in assistant answers from your own registry, controls, evidence and logs. Every answer cites its sources, and it only shows what your role is permitted to see.

Which departments are using unauthorized generative AI?

Four departments had unauthorized generative AI activity in the last 30 days. Human Services accounts for most of it.

DepartmentToolsUsers
Human Services231
Engineering312
Public Works16
Legal12
Discovery findingsAI registryEntra ID groups

Answer limited to records your role can access. Illustrative data.

One platform for everyone accountable for AI.

Each team works in its own view, on the same record.

Leadership and AI office

Enterprise posture, high-risk systems, spend and adoption in one executive view.

Security

Shadow AI, guardrail events, agent permissions and incidents, fed to your SIEM.

Risk and compliance

Assessments, control testing, evidence freshness and audit-ready packages.

Legal, privacy and records

Impact assessments, retention, legal hold and public-records search.

Finance and procurement

Budgets, chargeback, vendor risk, contracts and license renewals.

Every employee

A simple portal to find approved tools, request new ones, take training and report issues.

Works with the stack you already run.

Deep Microsoft 365 integration for labels, DLP, retention and identity, plus an open connector and API framework for everything else.

Microsoft 365 and Purview

Microsoft PurviewInformation ProtectionSensitivity labelsRetention labelsDLPAuditeDiscoveryRecords ManagementCopilot visibilitySharePointOneDriveTeamsOutlookEntra IDMicrosoft Graph

Custos reads your existing labels and policies, so there is nothing to classify twice.

Enterprise ecosystem

SIEMSOARIAMDLPCASB and SSEEDRITSMGRC platformsCloud platformsData warehousesCollaborationHR systemsProcurementTicketingRecords systemsWebhooksREST APIs

SSO through SAML and OIDC, automated user provisioning and deprovisioning, and custom roles with least-privilege access.

Built to hold the most sensitive record you keep.

Custos stores what your people say to AI. It is engineered accordingly.

Encryption

In transit and at rest, with managed keys and secrets handling.

Isolation

Tenant isolation, least-privilege access and privileged-access controls.

Residency

Configurable data residency and retention to meet your obligations.

Resilience

High availability, backup and disaster recovery, with security monitoring throughout.

Developed against ISO/IEC 27001 and SOC 2 criteria, and delivered by SDLC Corp, whose operations are certified to ISO/IEC 27001:2022 and ISO 9001:2015.

Request the security pack

Let's Talk About Your Product

Get expert guidance on architecture, scope, timelines, and delivery approach so you can move forward with confidence.

What happens next?