For platform, security & SRE teams

Agents are shipping faster than your controls can catch up.

Aarmos is the on-device governance runtime that closes the gap: signed policies pushed from your admin, per-tool consent on every device, tamper-evident audit, CEF/LEEF SIEM export, and SAML SSO on Enterprise. Governance is local-first. Evidence aggregation is optional.

Read this first
What the server sees vs. what stays on-device.

Governance is local-first. Evidence aggregation is optional. Server-side we hold account and entitlement records, team membership, and governance-policy pointers (URL + signing pubkey + min version). We never hold prompts, chats, tool calls, or workspace contents. If you turn on the evidence relay, it transports governance evidence and never participates in governance: typed, size-bounded evidence sections stored byte-for-byte as your device signed them, with policy evidence encryptable independently. You choose where the relay runs — hosted by us, your own object storage, or your own environment — and behavior is identical in every case. Governance policies publish to storage you own (BYOS); member devices fetch, verify signatures locally, and enforce. Air-gapped install and a signed Windows installer (MSI / winget) are available on request for annual Enterprise contracts — we build them against your environment rather than shipping a generic bundle. SOC 2 attestation and an SLA are still on the roadmap; if those are procurement blockers, ping us before signing.

Native protocol support · four shipped today
MCP Adapter
OpenAPI 3.1
A2A
Bearer
01 / Identity

SAML SSO (Enterprise)

Okta, Entra ID, Google Workspace, OneLogin, Ping — any SAML 2.0 IdP. SSO binds a per-install Identity to your corporate directory. No Aarmos-hosted service ever proxies or sees agent data — the local daemon is the only enforcement path. Invite-based membership on Team plan; SSO domain binding on Enterprise.

02 / Compliance

SIEM export (CEF + LEEF)

Export aggregated on-device audit as ArcSight CEF or IBM QRadar LEEF, or POST directly from the browser to your own SIEM webhook. Team delivers evidence into the tooling you already run; Enterprise adds federation, routing, and conditional filtering across your organization. Compliance overlay maps entries to EU AI Act, HIPAA, SOC 2, NIST AI RMF, and ISO/IEC 42001 controls with source citations — evidence primitives, not a certification.

03 / Governance policy

Signed governance policies (BYOS pointer)

Admin signs a governance bundle in /vault and publishes to storage you own. Every member device polls the pointer every 5 min, verifies signature + min-version locally, and enforces. The server holds the pointer; the bytes stay yours.

04 / Compliance

Signed on-device audit

Every tool call routed through the runtime becomes a signed Receipt on-device in a tamper-evident chain. Evidence anchored to this device's Identity — nothing central to subpoena.

05 / Signed audit

Bounded sub-agent delegation

Delegation depth capped at 4; allowlist intersection enforced at every hand-off. A callee can never widen the authority its caller was granted. Every hand-off is stamped in the delegation chain for reconstruction.

Then: understand, then improve

Governed execution produces a stream of signed decisions. Operations turns that stream into a flight recorder, trust posture, and counterfactual replay — so a team can see what actually happened, spot drift early, and change policy on evidence instead of opinion.

Explore Operations