Back to vendors
K

Knostic

Also known as: Knostic, Knostic AI, knostic.ai

Visit site
Security / SOC agentindependentVerified 2026-07-22

First AI security platform for need-to-know access control at the knowledge layer, preventing enterprise assistants (Microsoft 365 Copilot, Glean, Gemini, custom LLMs) from oversharing sensitive data. Addresses the LLM-specific inference risk that IAM and DLP miss: it captures per-user, per-topic need-to-know policies, simulates real employee queries to find oversharing before users do, and enforces dynamically with runtime redaction, knowledge-graph visibility, and forensic audit trails aligned to the EU AI Act, ISO 42001, and NIST AI RMF. Founded 2023 by Gadi Evron and Sounil Yu; $19.3M raised; SOC 2 Type II; RSA and Black Hat competition winner.

Knostic is the first AI security platform built to enforce need-to-know access controls for enterprise large language models, governing the knowledge layer between static data and AI answers so tools like Microsoft 365 Copilot, Glean, and Google Gemini do not overshare sensitive corporate data. Its core insight is that traditional IAM and DLP operate at the data level (who can open which file), while enterprise LLMs operate at the knowledge level and introduce an inference risk unique to AI: even when an employee lacks direct access to a document, an assistant can infer restricted information from what it can reach. Knostic captures, defines, and manages per-user, per-topic need-to-know policies, the context for LLM access decisions that until now was never explicitly codified, and enforces them dynamically at runtime by redacting or blocking outputs that exceed a user's permissions or context. It detects oversharing, undersharing, and inference risks by simulating real employee queries across enterprise assistants to uncover exposure paths before users do, and its Copilot Readiness Assessment lets organizations proactively discover what sensitive content is exposed, serving as a deployment safety net whether or not Copilot is being rolled out. The platform provides knowledge-graph visibility, accelerates data classification by applying need-to-know policies, and delivers forensic audit trails logging which data sources contributed to each AI answer, aligning to the EU AI Act, ISO/IEC 42001, and the NIST AI RMF. Founded in 2023 by Gadi Evron and Sounil Yu, backed by $19.3M, SOC 2 Type II certified, and uniquely a winner of both the RSA 2024 Launch Pad and Black Hat 2024 Startup Spotlight plus an RSAC 2025 Innovation Sandbox finalist, Knostic occupies a distinct route into the AI-agent-security cluster: not runtime attack detection or red teaming, but knowledge-layer access governance for the enterprise AI assistants employees already use.

Vendor details

Canonical URL

https://www.knostic.ai

Category

Security / SOC agent

Funding status

Independent Herndon, Virginia company founded 2023 by Gadi Evron (serial entrepreneur, former CISO of the Israeli National Digital Authority) and Sounil Yu (creator of the Cyber Defense Matrix, former Bank of America Chief Security Scientist); $19.3M total funding including $11M in March 2025 and a $5M RSAC 2025 Innovation Sandbox investment from Crosspoint Capital Partners; only startup to win both the RSA Conference 2024 Launch Pad and the Black Hat 2024 Startup Spotlight, and an RSAC 2025 Innovation Sandbox Top 10 finalist; SOC 2 Type II certified

Company status

independent

Use cases & customers

Primary use cases

need-to-know access control for enterprise LLMs (Copilot, Glean, Gemini)oversharing, undersharing, and inference risk detectionCopilot readiness assessment before enterprise AI rolloutruntime redaction and blocking of outputs exceeding user permissionsAI knowledge governance and audit for EU AI Act, ISO 42001, NIST AI RMF

Target customers

enterprises deploying Microsoft 365 Copilot, Glean, or Geminisecurity teams assessing AI oversharing before rolloutregulated organizations needing AI knowledge governance and auditAI-forward enterprises with mature data classification

Deployment options

integrates with Microsoft 365 and enterprise stacks to govern Copilot, Glean, Gemini, and custom LLMsSOC 2 Type II certified

Integrations

Governs the knowledge layer between static data and AI answers for enterprise AI tools including Microsoft 365 Copilot, Glean, Google Gemini, and custom LLMs, detecting where they overshare sensitive knowledge across Teams, OneDrive, SharePoint, and other sources. It simulates real employee queries across these assistants to reveal exposure paths before users find them, and integrates with M365 and enterprise stacks. A Copilot Readiness Assessment surfaces overshared content whether or not Copilot is being rolled out. Also maintains OpenAnt, an open-source LLM vulnerability discovery project.

Capability coverage

7.5 / 14 capabilities · 54%

Integrations & Tool CallingIntegrates with Microsoft 365 and enterprise stacks to govern Copilot, Glean, Gemini, and custom LLMs across Teams, OneDrive, SharePoint, and other sources, Knostic materials and appsecsanta review 2026-07-22 Full
Workflow OrchestrationRuns a discovery-to-enforcement flow (simulate employee queries, detect oversharing, enforce need-to-know), but is a governance-and-control platform rather than a multi-step autonomous action agent, Knostic what-we-do and blog 2026-07-22 Partial
Knowledge Grounding & RAGGoverns the knowledge layer with a knowledge graph of the organization's content, capturing per-user, per-topic need-to-know policies as the grounding context for access decisions, Knostic TRiSM brief and blog 2026-07-22 Full
Human Oversight & GuardrailsSecurity teams define and manage need-to-know policies and governance frameworks that the platform enforces, keeping humans in control of the access boundaries, Knostic what-we-do and TRiSM brief 2026-07-22 Partial
Security, Identity & GovernanceThe entire product is need-to-know access control and knowledge governance for LLMs, SOC 2 Type II certified, with real-time enforcement aligned to the EU AI Act, ISO/IEC 42001, and NIST AI RMF, Knostic security page and appsecsanta review 2026-07-22 Full
Observability & AuditabilityProvides complete forensic audit trails of AI interactions, logging which data sources contributed to each answer, with knowledge-graph visibility into exposure, appsecsanta review and Knostic blog 2026-07-22 Full
Memory & State PersistenceMaintains a persistent knowledge graph and codified per-user, per-topic need-to-know policies that build dynamic boundaries reflecting role, context, and actual usage over time, Knostic materials 2026-07-22 Partial
Deployment & Data ResidencyNo on-premise, deployment-model, or documentation retrieved beyond M365 and enterprise-stack integration, Knostic materials 2026-07-22 Unable to verify
Prebuilt Agents, Templates & PacksNo prebuilt template, pack, or agent library documented; the Copilot Readiness Assessment is a service offering rather than a template catalog, Knostic materials 2026-07-22 Unable to verify
Triggers & Channel CoverageContinuously simulates real employee queries to discover exposure and enforces need-to-know dynamically at runtime, redacting or blocking outputs in real time, Knostic blog and TRiSM brief 2026-07-22 Full
Model Flexibility & RoutingGoverns third-party assistants (Copilot, Glean, Gemini) but exposes no customer-facing model choice or routing of its own, Knostic materials 2026-07-22 Unable to verify
APIs, SDKs & MCP ExtensibilityMaintains OpenAnt, an open-source LLM vulnerability discovery project, and an LLM oversharing tester, indicating a developer-facing tooling surface; a full commercial API or SDK was not retrieved, Knostic security page 2026-07-22 Partial
Testing, Debugging & OptimizationSimulates real employee queries to test enterprise assistants for oversharing before users encounter it, a red-team-style evaluation of the AI deployment, Knostic blog and what-we-do 2026-07-22 Partial
Browser & Computer UseNo browser or computer-use capability documented; Knostic operates on the enterprise knowledge and assistant layer, Knostic materials 2026-07-22 Unable to verify

Pricing

Contact sales

scope of enterprise AI assistants and knowledge sources under governance

Contact onlyMedium variable cost

What is public

The platform capabilities (need-to-know enforcement, oversharing detection, knowledge graph, audit trails, framework alignment) and the Copilot Readiness Assessment are public; no plans, tiers, or dollar amounts are disclosed.

Variable cost rationale

Cost scales with the number of enterprise AI assistants governed and the volume of knowledge sources and users under need-to-know policy enforcement.

Sales call required

Yes — required for paid access

Free / trial

Copilot Readiness Assessment offered as an entry point

Verified 2026-07-22

Contact us

Found a vendor we missed? Have feedback on the index? We'd love to hear from you.