Models
Weights, versions, tokenizers, adapters and provenance.
GlassCage gives security teams a controlled place to quarantine, inspect, attack, observe and certify AI systems before they are trusted in the enterprise.
GlassCage assesses the components that make an AI system powerful—and potentially dangerous—as one governed security boundary.
Weights, versions, tokenizers, adapters and provenance.
Autonomy, instruction boundaries and excessive agency.
Permissions, tool poisoning and privileged actions.
Sensitive context, retrieval boundaries and leakage.
Containers, dependencies, processes and network behavior.
Artifacts, signatures, SBOMs, dependencies and integrity.
GlassCage is designed to test both traditional runtime escape and agentic escape—the point where an AI stays inside its runtime but abuses the tools and authority surrounding it.
Agent crossed an explicit authorization boundary during adversarial testing.
Synthetic protected data was exposed through an indirect prompt injection path.
The GlassCage control plane manages policy, assessments, evidence and certification. A private GlassCage Runner can execute sensitive tests inside the customer's own environment.
We're building GlassCage for security, AI engineering and governance teams responsible for deciding which AI systems can be trusted in the enterprise.
Join the early access list for product previews and pilot opportunities.