Knostic
Also known as: Knostic, Knostic AI, knostic.ai
First AI security platform for need-to-know access control at the knowledge layer, preventing enterprise assistants (Microsoft 365 Copilot, Glean, Gemini, custom LLMs) from oversharing sensitive data. Addresses the LLM-specific inference risk that IAM and DLP miss: it captures per-user, per-topic need-to-know policies, simulates real employee queries to find oversharing before users do, and enforces dynamically with runtime redaction, knowledge-graph visibility, and forensic audit trails aligned to the EU AI Act, ISO 42001, and NIST AI RMF. Founded 2023 by Gadi Evron and Sounil Yu; $19.3M raised; SOC 2 Type II; RSA and Black Hat competition winner.
Knostic is the first AI security platform built to enforce need-to-know access controls for enterprise large language models, governing the knowledge layer between static data and AI answers so tools like Microsoft 365 Copilot, Glean, and Google Gemini do not overshare sensitive corporate data. Its core insight is that traditional IAM and DLP operate at the data level (who can open which file), while enterprise LLMs operate at the knowledge level and introduce an inference risk unique to AI: even when an employee lacks direct access to a document, an assistant can infer restricted information from what it can reach. Knostic captures, defines, and manages per-user, per-topic need-to-know policies, the context for LLM access decisions that until now was never explicitly codified, and enforces them dynamically at runtime by redacting or blocking outputs that exceed a user's permissions or context. It detects oversharing, undersharing, and inference risks by simulating real employee queries across enterprise assistants to uncover exposure paths before users do, and its Copilot Readiness Assessment lets organizations proactively discover what sensitive content is exposed, serving as a deployment safety net whether or not Copilot is being rolled out. The platform provides knowledge-graph visibility, accelerates data classification by applying need-to-know policies, and delivers forensic audit trails logging which data sources contributed to each AI answer, aligning to the EU AI Act, ISO/IEC 42001, and the NIST AI RMF. Founded in 2023 by Gadi Evron and Sounil Yu, backed by $19.3M, SOC 2 Type II certified, and uniquely a winner of both the RSA 2024 Launch Pad and Black Hat 2024 Startup Spotlight plus an RSAC 2025 Innovation Sandbox finalist, Knostic occupies a distinct route into the AI-agent-security cluster: not runtime attack detection or red teaming, but knowledge-layer access governance for the enterprise AI assistants employees already use.
Vendor details
Canonical URL
https://www.knostic.ai
Category
Security / SOC agent
Funding status
Independent Herndon, Virginia company founded 2023 by Gadi Evron (serial entrepreneur, former CISO of the Israeli National Digital Authority) and Sounil Yu (creator of the Cyber Defense Matrix, former Bank of America Chief Security Scientist); $19.3M total funding including $11M in March 2025 and a $5M RSAC 2025 Innovation Sandbox investment from Crosspoint Capital Partners; only startup to win both the RSA Conference 2024 Launch Pad and the Black Hat 2024 Startup Spotlight, and an RSAC 2025 Innovation Sandbox Top 10 finalist; SOC 2 Type II certified
Company status
independent
Use cases & customers
Primary use cases
Target customers
Deployment options
Integrations
Governs the knowledge layer between static data and AI answers for enterprise AI tools including Microsoft 365 Copilot, Glean, Google Gemini, and custom LLMs, detecting where they overshare sensitive knowledge across Teams, OneDrive, SharePoint, and other sources. It simulates real employee queries across these assistants to reveal exposure paths before users find them, and integrates with M365 and enterprise stacks. A Copilot Readiness Assessment surfaces overshared content whether or not Copilot is being rolled out. Also maintains OpenAnt, an open-source LLM vulnerability discovery project.
Sources & related URLs
Capability coverage
7.5 / 14 capabilities · 54%
| Integrations & Tool CallingIntegrates with Microsoft 365 and enterprise stacks to govern Copilot, Glean, Gemini, and custom LLMs across Teams, OneDrive, SharePoint, and other sources, Knostic materials and appsecsanta review 2026-07-22 | Full |
|---|---|
| Workflow OrchestrationRuns a discovery-to-enforcement flow (simulate employee queries, detect oversharing, enforce need-to-know), but is a governance-and-control platform rather than a multi-step autonomous action agent, Knostic what-we-do and blog 2026-07-22 | Partial |
| Knowledge Grounding & RAGGoverns the knowledge layer with a knowledge graph of the organization's content, capturing per-user, per-topic need-to-know policies as the grounding context for access decisions, Knostic TRiSM brief and blog 2026-07-22 | Full |
| Human Oversight & GuardrailsSecurity teams define and manage need-to-know policies and governance frameworks that the platform enforces, keeping humans in control of the access boundaries, Knostic what-we-do and TRiSM brief 2026-07-22 | Partial |
| Security, Identity & GovernanceThe entire product is need-to-know access control and knowledge governance for LLMs, SOC 2 Type II certified, with real-time enforcement aligned to the EU AI Act, ISO/IEC 42001, and NIST AI RMF, Knostic security page and appsecsanta review 2026-07-22 | Full |
| Observability & AuditabilityProvides complete forensic audit trails of AI interactions, logging which data sources contributed to each answer, with knowledge-graph visibility into exposure, appsecsanta review and Knostic blog 2026-07-22 | Full |
| Memory & State PersistenceMaintains a persistent knowledge graph and codified per-user, per-topic need-to-know policies that build dynamic boundaries reflecting role, context, and actual usage over time, Knostic materials 2026-07-22 | Partial |
| Deployment & Data ResidencyNo on-premise, deployment-model, or documentation retrieved beyond M365 and enterprise-stack integration, Knostic materials 2026-07-22 | Unable to verify |
| Prebuilt Agents, Templates & PacksNo prebuilt template, pack, or agent library documented; the Copilot Readiness Assessment is a service offering rather than a template catalog, Knostic materials 2026-07-22 | Unable to verify |
| Triggers & Channel CoverageContinuously simulates real employee queries to discover exposure and enforces need-to-know dynamically at runtime, redacting or blocking outputs in real time, Knostic blog and TRiSM brief 2026-07-22 | Full |
| Model Flexibility & RoutingGoverns third-party assistants (Copilot, Glean, Gemini) but exposes no customer-facing model choice or routing of its own, Knostic materials 2026-07-22 | Unable to verify |
| APIs, SDKs & MCP ExtensibilityMaintains OpenAnt, an open-source LLM vulnerability discovery project, and an LLM oversharing tester, indicating a developer-facing tooling surface; a full commercial API or SDK was not retrieved, Knostic security page 2026-07-22 | Partial |
| Testing, Debugging & OptimizationSimulates real employee queries to test enterprise assistants for oversharing before users encounter it, a red-team-style evaluation of the AI deployment, Knostic blog and what-we-do 2026-07-22 | Partial |
| Browser & Computer UseNo browser or computer-use capability documented; Knostic operates on the enterprise knowledge and assistant layer, Knostic materials 2026-07-22 | Unable to verify |
Pricing
Contact sales
scope of enterprise AI assistants and knowledge sources under governance
What is public
The platform capabilities (need-to-know enforcement, oversharing detection, knowledge graph, audit trails, framework alignment) and the Copilot Readiness Assessment are public; no plans, tiers, or dollar amounts are disclosed.
Variable cost rationale
Cost scales with the number of enterprise AI assistants governed and the volume of knowledge sources and users under need-to-know policy enforcement.
Sales call required
Yes — required for paid access
Free / trial
Copilot Readiness Assessment offered as an entry point
Related vendors
- 7AI — Swarming agentic SOC from the Cybereason founders: sixty plus domain…
- AirMDR — AI-native MDR built around a Virtual Analyst that triages 95% of…
- Airrived — Agentic OS that unifies SOC, GRC, IAM, vulnerability management, IT,…
- Andesite — Bionic SOC: a human-AI collaboration platform that automates triage,…
- Assail — Autonomous red teaming platform (Ares) whose AI agents discover,…
- Astelia — AI native exposure management platform from Israeli National Red…