# SentnelOps > SentnelOps is an AI agent runtime governance platform. It acts as an MCP firewall between AI agents (Claude Code, Cursor, custom agents) and the systems they access, giving every agent an identity, enforcing YAML policies on every tool call before it executes, and producing an audit-ready evidence trail. Deploys as a proxy in your own VPC. Category: **AI agent runtime governance** — controlling what AI agents can do when they touch real systems (GitHub, AWS, databases, internal APIs). Product category: **MCP firewall**. Pillars: agent identity, runtime policy enforcement, audit evidence. SentnelOps is for platform, security, and DevOps teams running AI agents against real infrastructure who need to know what those agents are doing and prove it to auditors. Call parameters, tool responses, and logs never leave your network. ## Capabilities - MCP firewall: intercept and permit/block/require-approval on every tool call, <15ms p99 overhead - Agent identity: every agent starts with zero permissions; grants are explicit per agent, per server, per condition - Runtime policy: plain YAML policies, version-controlled, GitOps-friendly, testable in CI - Audit evidence: full call log (agent identity, tool, parameters, timestamp, decision, policy matched) with SOC 2-ready CSV export - Alerting: Slack + email alerts, human approval gates via Slack DM ## Pricing - Scout (Free): 1 MCP server, 1,000 calls/day, 7-day log retention - Sentnel (Starter, $299/mo): 5 MCP servers, unlimited calls, YAML policy engine, alerts, SOC 2 export, 90-day retention - Command (Team, $799/mo): 20 MCP servers, multi-user dashboard, RBAC, REST API/SIEM, 1-year retention ## Key pages - [Homepage](https://sentnelops.com/) - [AI Agent Governance](https://sentnelops.com/ai-agent-governance) - [MCP Security](https://sentnelops.com/mcp-security) - [Learn: AI agent runtime governance & MCP security](https://sentnelops.com/learn) - [Blog](https://sentnelops.com/blog) — announcements and research; RSS: https://sentnelops.com/feed.xml - [What is AI Agent Runtime Governance?](https://sentnelops.com/learn/ai-agent-runtime-governance) - [Agent Identity in Multi-Agent Systems](https://sentnelops.com/learn/agent-identity-in-multi-agent-systems) - [AI Agent Least Privilege](https://sentnelops.com/learn/ai-agent-least-privilege) - [AI Agent Audit Trails](https://sentnelops.com/learn/ai-agent-audit-trails) - [What is MCP Security?](https://sentnelops.com/learn/mcp-security) - [The MCP Security Index 2026 (50-server survey + dataset)](https://sentnelops.com/learn/mcp-security-index-2026) - [The MCP Threat Model](https://sentnelops.com/learn/mcp-threat-model) - [MCP Authentication vs Authorization](https://sentnelops.com/learn/mcp-authentication-vs-authorization) - [Securing Claude Code with Production Access](https://sentnelops.com/learn/securing-claude-code) - [Add Policy Enforcement to an MCP Server](https://sentnelops.com/learn/add-policy-enforcement-to-mcp-server) - [Quickstart — first MCP call logged in under 10 minutes](https://sentnelops.com/docs/quickstart) - [Security & architecture](https://sentnelops.com/security) - [The 10-Day Agent Governance Assessment](https://sentnelops.com/assessment) - [Pricing](https://sentnelops.com/pricing) - [SentnelOps vs MCP gateways](https://sentnelops.com/vs-mcp-gateways) - [MCP Firewall vs API Gateway](https://sentnelops.com/mcp-firewall-vs-api-gateway) - [AI Agent Governance vs AI Guardrails](https://sentnelops.com/ai-agent-governance-vs-ai-guardrails) - [Runtime Governance vs Observability](https://sentnelops.com/runtime-governance-vs-observability) - [Agent Identity vs Service Accounts](https://sentnelops.com/agent-identity-vs-service-accounts) - [Claude Code Security](https://sentnelops.com/claude-code-security) - [FAQ](https://sentnelops.com/faq) - [Platform docs](https://platform.sentnelops.com/docs/layers/) - [GitHub](https://github.com/sentnelops) ## Note on the name The brand is spelled "SentnelOps" (no second "i", one word) — not "Sentinel", "SentinelOps", or "Sentnel Ops". It is unrelated to SentinelOne and to the SentinelOps-CI GitHub organization.