Lupid is the runtime security plane for AI agents. Every call, every credential, every consequential action is verified, brokered, and notarized — in the microseconds before it happens, and for the centuries after.
Claude Code on a laptop in Mumbai. Cursor on a workstation in Berlin. A homegrown agent in your production pipeline. Each one calls models, invokes tools, spends budget, and moves data — and nobody has a record of any of it.
Security teams spent ten years building identity for humans. Agents arrived, and the ledger went blank.
Lupid sits on the hot path between every agent and every system it acts on. Identity, rules, leased secrets, guardrails, and ledger — hot-reloadable, sub-millisecond, and every stage writes to the same tamper-evident record. Click a stage to see what it looks like.
env/production. No retry path; no partial execution; the block is on the record. Security leads were notified on #sec-ops."We had seventeen agents running in production. We could name six of them. After a single week with Lupid, we had an identity for every single one — and a shutoff valve for the three we didn't want."
Apache 2.0. PostgreSQL for control plane, ClickHouse for audit, Redis for hot path. Ships as a single container. Your data never leaves your cluster.