Clutch Security
Non human identity security platform that discovers, governs and secures machine identities, AI agents and secrets across cloud, SaaS and on premises, built on the Identity Lineage graph, with customer set Agent Guardrails and ephemeral credentials.
Clutch Security is a Tel Aviv founded company, incorporated in the United States in Wilmington, Delaware, started in 2023 by CEO Ofir Har-Chen, a cybersecurity veteran with leadership roles at Sygnia and Hunters. It raised an eight and a half million dollar seed and a twenty million dollar Series A in January 2025 led by SignalFire with Lightspeed Venture Partners and Merlin Ventures participating. Its thesis is that machines, not people, are becoming the weakest link, and that enterprise adoption of AI agents makes non human identities the next major attack surface.
Clutch calls its product a universal non human identity security platform covering three surfaces: non human identities, AI agents and secrets. It rests on the Identity Lineage graph, which connects each entity to its origin, the people behind it, where it is stored, what consumes it and the resources it reaches. For identities it offers discovery and inventory, lifecycle management on predefined and custom rules, posture and risk management, and real time threat detection when behavior deviates from a baseline.
For AI agents it adds discovery and Agent Guardrails, where the customer sets boundaries on who may deploy agents, which agents run, which tools they execute, which identities they authenticate with and which resources they reach, with every policy trigger and enforcement decision recorded with lineage context. Secret governance, contextual secret scanning and vault augmentation cover the third surface, and ephemeral credentials replace static ones.
More than 100 agentless integrations span clouds, identity providers, vaults, code hosts and AI tools, alerts and remediation actions flow into SIEM, SOAR, ticketing and collaboration tools, and a Clutch MCP server, announced in August 2025, lets AI assistants query the lineage graph.
Clutch has no AI agent of its own on its pages; it governs the customer's. Its trust center lists SOC 2 Type II and ISO 27001, and its Zero Knowledge Architecture keeps sensitive data inside the customer's network, though no hosting region or deployment option is published and no SSO or role model is documented. It fits enterprise security teams in banking, insurance and technology confronting non human identity sprawl and agent adoption; buyers wanting a documented developer API, a published MCP tool list or published pricing will find none.
Vendor details
Canonical URL
https://www.clutch.security
Category
Security / SOC agent
Subcategory
Non human identity and AI agent security platform
Funding status
Independent, founded in 2023 in Tel Aviv by CEO Ofir Har-Chen, a Sygnia and Hunters veteran, with a United States entity in Wilmington, Delaware. Raised twenty eight and a half million dollars total: an eight and a half million dollar seed and a twenty million dollar Series A announced January 2025, led by SignalFire with participation from Lightspeed Venture Partners and Merlin Ventures. Customers span banking, financial services, insurance, and technology.
Company status
independent
Use cases & customers
Primary use cases
Target customers
Deployment options
Integrations
More than 100 agentless integrations spanning AWS, Azure and GCP, identity providers such as Okta and Azure AD, vaults such as CyberArk, HashiCorp and 1Password, GitHub and GitLab, and AI tools such as Claude, OpenAI and LangChain, with insights, alerts and remediation actions flowing bi directionally into SIEM, SOAR, ticketing and collaboration tools. A Clutch MCP server exposes the Identity Lineage graph to AI assistants. Listed on the AWS Marketplace and the CrowdStrike Marketplace as purchase channels.
In practice
A bank discovers service accounts and API keys outnumber employees many times over, scattered across cloud, SaaS, and on prem. Clutch builds a contextualized inventory mapping each identity to its owner, permissions, and blast radius within minutes of connecting.
Teams deploy AI agents faster than security can track them. Clutch traces every agent from the person who deployed it through its tools, credentials, and reachable resources, applying guardrails that move agents from shadow to governed.
A leaked API key would normally mean a fire drill. With ephemeral identities and continuous zero trust validation, the exposed credential is already expired or unusable, and anomalous access attempts trigger real time alerts with full context.
Sources & related URLs
Related / legacy domains
Research sources
Agentic Index coverage score
6.0 / 14 capabilities · 43%
| Integrations & Tool Calling | Full |
|---|---|
|
"Insights, alerts, and remediation actions flow directly into your SIEM, SOAR, ticketing, and collaboration tools" through bi directional integrations, alongside 100+ agentless integrations across clouds, identity providers, vaults, code hosts and AI tools, and Clutch's MCP server is described as enabling autonomous remediation. Sourceclutch.security/platformread 2026-09-28 |
|
| Workflow Orchestration | Partial |
|
Lifecycle management runs on "predefined rules and a custom rule engine" and guardrails apply by context (the same tool call allowed in development and blocked in production), rules the buyer sets, but no multi step flow, branching workflow or coordinating agents is documented. Sourceclutch.security/nhi/lifecycle-managementread 2026-09-28 |
|
| Knowledge Grounding & RAG | Full |
|
The Identity Lineage graph connects each identity, agent and secret to its origin, owners, storage, consumers and reachable resources, and Clutch's MCP server lets AI assistants query it in natural language, a maintained retrieval structure over the customer's own estate. Sourceclutch.security/blog/introducing-the-first-universal-nhi-mcp-server-intelligent-identity-lineage-tm-at-your-fingertipsread 2026-09-28 |
|
| Human Oversight & Guardrails | Partial |
|
Agent Guardrails let the customer set boundaries on who deploys agents, which agents run, which tools they execute, which identities they use and which resources they reach, blocking by context, which constrains the customer's own agents; no approve or hold step before an agent action commits is documented. Sourceclutch.security/agentic-ai/agent-guardrailsread 2026-09-28 |
|
| Security, Identity & Governance | Partial |
|
The trust center states SOC 2 Type II and ISO 27001. No published page documents SSO, roles or an admin audit log for the Clutch console. Sourceclutch.security/trust-centerread 2026-09-28 |
|
| Observability & Auditability | Partial |
|
"Every policy trigger and every enforcement decision is recorded with complete lineage context", a decision log over the customer's agents, but no per step or per tool call record of agent execution is documented. Sourceclutch.security/agentic-ai/agent-guardrailsread 2026-09-28 |
|
| Memory & State Persistence | Not documented |
|
The Identity Lineage graph is a retrieval structure rather than agent memory, and no agent memory with a stated scope and lifetime is documented. Sourceclutch.securityread 2026-09-28 |
|
| Deployment & Data Residency | Partial |
|
Clutch is SaaS with a Zero Knowledge Architecture that "keeps all data within your network", a residency claim, but no hosting region, customer environment option or description of what runs where is published. Sourceclutch.security/trust-centerread 2026-09-28 |
|
| Prebuilt Agents, Templates & Packs | Not documented |
|
Clutch ships predefined lifecycle rules but no prebuilt agents, agent templates or named packs; it has no agent of its own. Sourceclutch.security/nhi/lifecycle-managementread 2026-09-28 |
|
| Triggers & Channel Coverage | Full |
|
Threat detection fires in real time when an identity or agent deviates from its baseline, and guardrails fire on each policy trigger, so events in the customer's estate start the work on their own. Sourceclutch.security/platformread 2026-09-28 |
|
| Model Flexibility & Routing | Not documented |
|
No model of Clutch's own is named and no customer choice of model is documented; the AI tools on the integrations list are estates Clutch governs. Sourceclutch.securityread 2026-09-28 |
|
| APIs, SDKs & MCP Extensibility | Partial |
|
Clutch announced its own MCP server for querying and acting on the Identity Lineage graph (21 Aug 2025), but no endpoint, auth scheme or tool list is published, and no REST API or SDK is documented. Sourceclutch.security/blog/introducing-the-first-universal-nhi-mcp-server-intelligent-identity-lineage-tm-at-your-fingertipsread 2026-09-28 |
|
| Testing, Debugging & Optimization | Not documented |
|
No red teaming, scored testing or simulation of the customer's agents and no test surface for Clutch's own rules is documented. Sourceclutch.security/platformread 2026-09-28 |
|
| Browser & Computer Use | Not documented |
|
Clutch works through agentless API integrations; no browser or desktop operation is documented. Sourceclutch.securityread 2026-09-28 |
|
The Agentic Index coverage score grades every vendor Full, Partial or Not documented against the same 14 buyer facing capabilities, from public evidence only. Each capability links to how all vendors in the index score on it. How this evidence is graded
Pricing
No public pricing; enterprise contracts are quoted through sales
enterprise contracts, structure not publicly documented
What is public
Nothing numeric. The platform structure is public: discovery and inventory, lifecycle management, posture and risk management, threat detection and response, Agent Guardrails, and secret governance, sold as an enterprise platform. Listings exist on the AWS Marketplace and CrowdStrike Marketplace but neither carries public rates.
Billing mechanics
Enterprise sales led motion, with marketplace procurement available through AWS Marketplace and the CrowdStrike Marketplace for organizations that prefer those channels.
Cost watchouts
Inference, not stated by the vendor: the number of connected environments and integrations under management is the likely driver of deployment effort and contract size.
Variable cost rationale
Inference, not stated by the vendor: NHI security platforms typically scope by identities and connected environments, and identity counts grow continuously, so contract size may drift upward with footprint; no public rate structure exists.
Additional watchouts
Identity count is the natural scoping axis and NHIs typically outnumber humans many times over, so inventory growth between renewal cycles is worth negotiating up front.
Sales call required
Yes, required for paid access
Free / trial
No free tier or self serve trial is documented; the site leads with demo requests and the homepage promises full inventory from day one and findings within minutes of connecting
Key ambiguities
Whether contracts scope by identity count, connected environments, modules, or some combination.
Missing data
No published pricing, tiers, minimums, per identity rates, or contract terms were retrievable.
Related vendors
- 7AI — Agentic SOC from the Cybereason founders: domain specialized agents…
- Abnormal AI — Behavioral AI email security with three named autonomous agents: a…
- AirMDR — AI-native MDR whose AI analyst investigates every alert and writes…
- Airrived — Agentic OS that unifies SOC, GRC, IAM, vulnerability management, IT,…
- Andesite — Human-AI SOC platform where customers build their own agents and…
- Anvilogic — Agentic security operations platform that works on top of existing…
Alternatives to Clutch Security
The closest documented capability profiles to Clutch Security among security and SOC agents tracked by Agentic Index, ordered by similarity on the same 14 point evidence the rankings use. No vendor pays for placement.
- Knostic5.5 / 14Adds documented Testing, Debugging & Optimization
- Portal265.5 / 14Fuller documented coverage on Observability & Auditability
- Token Security6.5 / 14Adds documented Prebuilt Agents, Templates & PacksClutch Security vs Token Security →
- Pi6.0 / 14Adds documented Memory & State Persistence and Prebuilt Agents, Templates & Packs
- Radiant Security6.0 / 14Adds documented Prebuilt Agents, Templates & Packs
- StrikeReady7.0 / 14Adds documented Prebuilt Agents, Templates & Packs
Similarity is computed from each vendor's Agentic Index coverage score evidence, axis by axis, not from the totals. How this evidence is graded