NewFull security for Claude Enterprise

Securely ScaleEnterprise AI.

The AI control plane for every agent in your enterprise, built around an enterprise-grade MCP gateway. Give each team one governed path to its MCP servers, provisioned by role from the IdP you already run, with security policy enforced on every action.

Trusted by

The biggest companies
Google
Fifth Third
Mistral
Cisco
The fastest startups
PlanetScale
Vercel
Polar
MoonPay

The missing pieces in your company's AI rollout.

Agent Identity

Every agent acts under a persistent identity.

Access governed by your identity providerShort-lived, task-scoped credentialsEvery decision attributed to a name
Explore Agent Identity

MCP Gateway

One governed path to every server.

One official registry of MCP serversShadow MCP discovered and promotedEvery tool call logged to your OTEL destination
Explore MCP Gateway

Agent Security

Every prompt and tool call checked.

Policy enforced on every actionPrompt injection, and data exfiltration protectionRunaway sessions quarantined
Explore Agent Security

Speakeasy extends your stack

Speakeasy connects to the identity, network, device, monitoring, and compliance tools you already run, so agents work under the same controls as your people.

Connect in minutes

Identity providers

OktaEntra IDAuth0WorkOSGoogle WorkspacePing Identity+ Any SAML / OIDC

Network & devices

TailscaleJamfIruIntune+ more

Observability

DatadogGrafana CloudLangfuse+ Any OpenTelemetry collector

Compliance

AI gateways

We built our access controls on IAM. When we rolled out agents, the controls broke down. Speakeasy let us extend our identity management to all our AI usage.

Thierry Dang

Security Operations

MoonPay

One golden path
for every agent.

Whether your agents are acting on behalf of an employee, or running on their own, Spekaeasy brings them under one identity layer, with one shared gateway to every MCP server, and one set of security policies.

Read the guide: what is an AI control plane?

Your company is AI-native, your governance should be too

Speakeasy sits on the path between your agents and your systems. Identity, routing, security, and observability apply to every request, starting from the identity provider you already run and ending in the SIEM your security team already watches.

Becoming AI-native meant that we needed an entirely new governance & observability stack. You can't use old tools to cover your team's new way of working.

Shreyas Kumar

Co-founder, Fermat

Fermat

When AI is governed,
adoption grows

Numbers from teams running the control plane in production: full-company rollouts, MCP servers shipped in days, and usage that grows because governance stops being per-project work.

Read the MoonPay story

100%

Employee AI rollout

Fermatrolled out governed AI to the whole company.

60K

agent sessions governed per week

MoonPayenforces policy across every agent.

200%

MCP usage growth

PlanetScalecustomers are now agent-based.


Your compliance needs an AI control plane

The future of compliance depends on being able to answer three questions: what AI is in use, what can it access, and who approved each action. Speakeasy's control plane produces the answers.

Speakeasy is SOC 2 Type II, ISO 27001 and CSA STAR AI certified, GDPR compliant and HIPAA ready.

EU AI Act

Logging, human oversight, and risk controls for AI systems in production. The catalog, approval flow, and audit trail supply the operational evidence.

ISO 42001

The AI management system standard. Governed catalogs, scoped access, and decision records map to the controls an auditor asks to see.

NIST AI RMF

Govern, map, measure, manage. Fleet-wide visibility and runtime enforcement cover the functions that need more than policy documents.

Compliance at Speakeasy

The control plane meets the standards it helps you enforce. Speakeasy is SOC 2 Type II audited, ISO 27001 certified, and GDPR compliant, with reports available through the trust center.

AICPA SOC for Service OrganizationsISO 27001 Information Security Management CertifiedThe Linux FoundationCloud Security AllianceAgentic AI Foundation
Visit trust center

Questions

What is an AI control plane?
An AI control plane is a centralized platform that gives organizations governance and security over every AI agent, MCP server, and Skill across the company. Speakeasy provides a single layer to understand how AI is used, define what it can access, and enforce those policies on every action.
What AI agents does Speakeasy support?
Speakeasy works with Claude, ChatGPT, Cursor, GitHub Copilot, and any AI agent that supports the MCP protocol. A single policy layer governs all of them, so teams can use the tools they prefer without creating security gaps.
How does Speakeasy handle shadow AI?
Speakeasy maintains one catalog of approved agents, MCP servers, and Skills, so security can see how AI is used across the company. Connections to MCP servers outside the catalog are detected and quarantined, so unapproved tools can't quietly reach your systems, and teams can request approval to bring them onto the governed path.
How are AI policies defined?
Policies are written once at the control plane, in language the owning team can read, and scoped to the person or agent, the system, and the action. Access follows teams and roles from your identity provider, reads and writes are treated as different privileges, permissions go down to the individual tool, and a matching deny always wins.
How are policies enforced?
Every prompt, response, and tool call crosses the control plane, where it's checked against policy in real time before it reaches your systems. There is no side channel to bypass, and enforcement is the same whether an employee is driving the agent or it runs autonomously. Every allow-or-deny decision is logged, and violations can alert Slack, PagerDuty, or your SIEM.
Does Speakeasy replace my identity provider?
No. Speakeasy extends the identity provider you already run, including Okta, Microsoft Entra ID, Auth0, and any SAML or OIDC provider, to AI agents. Identity providers were built for people signing in to apps, so agents end up on borrowed credentials and shared service accounts. On the control plane, every agent acts under its own identity, and access follows your existing teams and roles.
How does Speakeasy handle security and compliance?
Each agent holds only the access its role allows, and every prompt, response, and tool call is checked against policy in real time. Threats like prompt injection, PII exposure, and leaked credentials are blocked before they leave your perimeter. The platform is SOC 2 Type II and ISO 27001 certified, with a full audit trail for every session.
How long does it take to deploy?
Most teams are up and running within a day. Speakeasy integrates with existing SSO providers like Okta and Entra ID, so access inherits your current groups and roles with no manual provisioning. Self-hosted and cloud deployment options are available.
What is MCP and why does it matter?
MCP (Model Context Protocol) is an open standard that lets AI agents connect to external tools and data sources. Speakeasy provides a managed platform for deploying, securing, and observing MCP servers at scale, turning any internal API or SaaS tool into a governed AI capability.
Can Speakeasy be self-hosted?
Yes. Speakeasy can be deployed in your own cloud or on-premises for full data residency control. The self-hosted option has no external dependencies and meets the requirements of teams that can't send data to third-party infrastructure.

AI everywhere.

Control here.