Shadow-AI firewall & audit

See everything your developers send to AI.

runveil sits in front of Claude Code, Cursor, and Copilot — blocking secrets, redacting sensitive data, and keeping an audit trail your security team can export.

Transparent with Claude Code, Cursor, Copilot, and ChatGPT.

runveil — live
POSTapi.anthropic.com/v1/messages
allow
POSTapi.openai.com/v1/chat/completions
redact
POSTapi.openai.com/v1/chat/completions
block
secret: aws_secret_access_key · high · blocked
3 requests · 1 blocked · 1 redacted — all logged

The problem

Shadow AI is your new egress problem.

Engineers paste source, secrets, and customer data into AI tools all day. Your DLP never sees it — it's TLS straight to someone else's API. runveil gives that visibility and control back, without changing how developers work.

How it works

Three moving parts.

1
Install the agent
One line installs a transparent HTTPS proxy with its own local CA, running as a background service. Developers don't change how they work.
2
Set your policy
Block high-severity secrets, redact PII, warn on sensitive file paths. One policy, enforced across every enrolled machine.
3
Audit everything
Every AI request, its verdict, and what triggered it — searchable, with CSV export and SIEM-ready output.

What you get

For the security team, not in the way of developers.

Secret scanning
Catches API keys, tokens, and credentials in outbound payloads before they leave the machine.
Path & DLP rules
Block or warn when an AI tool reads sensitive files or repositories, matched by glob.
Central policy
Edit once; agents pull and apply within ~30 seconds. Versioned, with instant rollback.
Fleet audit & analytics
Volume, errors, latency, and per-device activity across every enrolled machine.
Live view & export
Watch AI traffic arrive in real time; export the audit trail to CSV. SIEM forwarding next.
Roles & retention
Owner / admin / member access, and a per-tenant retention window you control.

Pricing

Start free. Pay as your fleet grows.

Free
Agent
$0
The open-source agent, running on a machine. No account needed.
  • Local policy & enforcement
  • Secret & path scanning
  • Local audit log
Install the agent
Most popular
Team
$12 / device / mo
The control plane for a security team managing a fleet.
  • Everything in Free
  • Central policy & rollout
  • Fleet audit, analytics & live
  • 30–90 day retention & CSV export
  • Roles (owner / admin / member)
Get started
Enterprise
Custom
Let's talk
For regulated teams and large fleets.
  • SSO / SAML & SCIM
  • SIEM forwarding
  • Self-hosted control plane
  • Unlimited retention, SLA & support
Contact us

Put runveil in front of your AI traffic today.

Install the agent in one line. See your first blocked request in minutes.

curl -fsSL https://raw.githubusercontent.com/dawnn07/runveil/main/install.sh | sh