HiddenLayer
Also known as: HiddenLayer, HiddenLayer AISec, AISec Platform, HiddenLayer AIDR, HiddenLayer Model Scanner
Leading independent AI/ML model security platform extended into agents: Model Scanner (35+ formats, supply-chain threats), AI Detection and Response against adversarial attacks and prompt injection, model genealogy and AIBOM governance, plus 2026 agentic runtime security that detects malicious tool calls and data exfiltration in multi-step autonomous workflows. The model-security-first counterpart to agent-native Noma and Zenity.
HiddenLayer is the leading independent provider of security for AI models and assets, and one of the two origin stories converging on the AI-agent-security cluster. Where agent-native platforms like Noma and Zenity started at the agent layer and reached down to models, HiddenLayer started at the model layer and reached up to agents. Its AISec Platform secures AI across the full lifecycle from training to production: Model Scanner inspects 35+ model formats for supply-chain threats such as malware, backdoors, trojans, tampering, and serialization exploits (the research team has disclosed 48+ CVEs in ML frameworks and holds 25+ patents in adversarial detection); AI Detection and Response (AIDR) non-invasively monitors, detects, and responds to adversarial attacks, prompt injection, and model evasion against GenAI and traditional ML in production; and Model Genealogy plus an AI Bill of Materials (AIBOM) deliver observability, governance, and policy-driven enforcement with white-glove policy recommendations. With AISec Platform 2.0 and its 2026 agentic update, HiddenLayer extended AI Runtime Security to secure how agents behave and act, giving security teams visibility into how agents execute and the ability to detect and stop prompt injection, malicious tool calls, and data exfiltration in multi-step autonomous workflows, starting with agentic runtime visibility and expanding to full threat-hunting and enforcement. Because it operates on model artifacts and inference behavior without accessing weights, training data, or prompts, it deploys turnkey across diverse and regulated environments, including government.
Vendor details
Canonical URL
https://hiddenlayer.com
Category
Security / SOC agent
Funding status
Independent. Co-founded 2022 by Chris (Tito) Sestito (CEO), Tanner Burns, and James Ballard; raised a $50M Series A in September 2023 led by M12 (Microsoft's Venture Fund) and Moore Strategic Ventures, with Booz Allen Ventures, IBM Ventures, and Capital One Ventures. Gartner-recognized Cool Vendor for AI Security; awardee on the $151B Missile Defense Agency SHIELD IDIQ.
Company status
independent
Use cases & customers
Primary use cases
Target customers
Deployment options
Integrations
Integrates into the MLOps pipeline and existing enterprise infrastructure; Model Scanner analyzes 35+ model formats from third-party and open-source repositories; AISec Platform 2.0 adds integrated support for agentic systems, external threat intelligence, and deployment observability. Non-invasive by design, operating on model artifacts and inference behavior rather than requiring access to weights, training data, or prompts.
Sources & related URLs
Research sources
Capability coverage
8.5 / 14 capabilities · 61%
| Integrations & Tool CallingIntegrates into the MLOps pipeline and enterprise infrastructure, scans 35+ model formats from third-party and open-source repositories, and adds integrated support for agentic systems and external threat intelligence, HiddenLayer AISec 2.0 and appsecsanta materials 2026-07-22 | Full |
|---|---|
| Workflow OrchestrationOrchestrates a full-lifecycle AI security workflow (scan, detect, respond, red team, govern) across model and agent runtime, and secures multi-step autonomous agent workflows end to end, HiddenLayer newsroom and AISec 2.0 materials 2026-07-22 | Full |
| Knowledge Grounding & RAGGrounds detection on integrated external threat intelligence plus Model Genealogy and an AI Bill of Materials (AIBOM) for model context, short of a customer-facing knowledge or retrieval product, HiddenLayer AISec 2.0 materials 2026-07-22 | Partial |
| Human Oversight & GuardrailsDetection and response feed human security teams with white-glove policy recommendations and telemetry-driven enforcement, plus incident-response dashboards, a human-oversight-and-policy model short of documented step-level runtime approval, HiddenLayer AISec 2.0 and agentic materials 2026-07-22 | Partial |
| Security, Identity & GovernanceHiddenLayer is itself an AI security and governance product: adversarial defense, supply-chain integrity, model governance and policy enforcement, PII/IP protection, and user/tenant management, with government-grade backing, HiddenLayer newsroom and datasheet 2026-07-22 | Full |
| Observability & AuditabilityDelivers telemetry dashboards, deployment observability, Model Genealogy, and AIBOM with full visibility into how and where models are used and by whom, plus agentic runtime visibility into how agents execute, HiddenLayer AISec 2.0 and agentic materials 2026-07-22 | Full |
| Memory & State PersistenceRetains model and deployment state through Model Genealogy (lineage), AIBOM, and telemetry dashboards giving full visibility into how and where models are used over time, a persistent state layer short of an agent memory product, HiddenLayer AISec 2.0 materials 2026-07-22 | Partial |
| Deployment & Data ResidencyDeploys turnkey across diverse model environments including government, non-invasively (no access to weights, training data, or prompts), implying deployment flexibility short of a documented customer self-host or residency guarantee, HiddenLayer datasheet and appsecsanta materials 2026-07-22 | Partial |
| Prebuilt Agents, Templates & PacksShips productized modules out of the box (Model Scanner across 35+ formats, AIDR, AI Runtime Security, agentic capabilities as tiers), a productized starting set short of a customer template library, HiddenLayer AISec 2.0 and datasheet materials 2026-07-22 | Partial |
| Triggers & Channel CoverageContinuously monitors model and agent runtime, detecting adversarial attacks, prompt injection, and risky multi-step agent behaviors in real time across model environments, HiddenLayer agentic-runtime and AIDR materials 2026-07-22 | Full |
| Model Flexibility & RoutingNo customer-facing model choice or routing; HiddenLayer secures and scans models rather than serving or routing them, HiddenLayer materials 2026-07-22 | Unable to verify |
| APIs, SDKs & MCP ExtensibilityIntegrates programmatically into MLOps pipelines and enterprise infrastructure (e.g. CI/CD model scanning), an integration surface short of a documented public SDK for building on HiddenLayer, HiddenLayer AISec materials 2026-07-22 | Partial |
| Testing, Debugging & OptimizationProvides red teaming and expert attack simulations plus red-teaming and telemetry dashboards to uncover security gaps and maintain compliance, a first-class security testing capability short of a build-time agent evaluation and optimization suite, HiddenLayer AISec 2.0 and OECD materials 2026-07-22 | Partial |
| Browser & Computer UseNo browser or computer use capability; HiddenLayer monitors and secures models and agents rather than driving a browser or GUI itself, HiddenLayer materials 2026-07-22 | Unable to verify |
Pricing
Contact sales
AI agent program maturity / capability tier and scope of models and agents secured
What is public
The tiering structure is public (start with agentic runtime visibility and detection, expand to full threat-hunting and enforcement), and modules (Model Scanner, AIDR, AI Runtime Security) are named; no dollar amounts are published.
Variable cost rationale
Cost scales with the capability tier adopted and the scope of models and agents secured, growing as an organization expands from runtime visibility to full enforcement across a larger AI footprint.
Sales call required
Yes — required for paid access
Free / trial
Not published
Related vendors
- 7AI — Swarming agentic SOC from the Cybereason founders: sixty plus domain…
- AirMDR — AI-native MDR built around a Virtual Analyst that triages 95% of…
- Airrived — Agentic OS that unifies SOC, GRC, IAM, vulnerability management, IT,…
- Andesite — Bionic SOC: a human-AI collaboration platform that automates triage,…
- Assail — Autonomous red teaming platform (Ares) whose AI agents discover,…
- Astelia — AI native exposure management platform from Israeli National Red…