

Run VisionX, GenGuard, Vault/PAM, and HostGuard IPS from the Trustity Cloud Portal - with the TAO agent enforcing protection where work actually happens. Need the portal on your own servers? See TCP On-Prem.

One lightweight agent. Coverage across camera, browser, credentials, and host protection.
Visual DLP on the interactive desktop - detection, evidence, and workstation lock when policy requires it.
Browser DLP for GenAI pastes, domain blocking, and Shadow IT discovery - managed from the portal.
Failed-logon detection, host firewall blocks, and alerts back to the Cloud Portal.
Traditional DLP misses phones, cameras, and lenses aimed at screens. VisionX detects visual-channel risks on the endpoint, reports evidence to the portal, and can lock the workstation until an admin unlock code is entered.
The perimeter moved to the browser. GenGuard blocks sensitive pastes into GenAI tools, enforces domain controls, and surfaces Shadow IT before it becomes an incident.
Store secrets in a zero-knowledge vault and rotate local admin credentials on a schedule. TAO applies the password on the endpoint and reports it to the portal for vaulting.
Catch brute-force attempts on the host. TAO watches failed logons, creates firewall rules for offending IPs, and reports incidents to the Cloud Portal.
Protect SMB file traffic and DNS at the network edge - inline reverse proxy, policy-driven DNS nodes, and offline-ready operation. A Trustity portfolio product, sold and licensed separately from the Cloud Portal.
Portfolio layer
TAO secures the endpoint. Axiom secures the protocols clients already use for files and DNS - without requiring software on every workstation for that path.
Axiom documentation →Customer portal ↗Practical controls for hybrid workstations and servers.
TAO unified agent - Windows service + session helper; Linux server modules.
Policy, vault, agents, critical alerts, retention, and Security Assurance readiness.
Deploy the controls your environment needs - activate capabilities without fragmenting your stack.
SIEM / syslog, alert routing, and operational workflows from the portal.
Windows endpoints (full suite). Linux servers (PAM, IPS, inventory).
Asset inventory reporting from TAO into the portal.
See our Trust Center and Privacy Policy for data handling.
Scoped, revocable keys from the Cloud Portal for read-only org, agent, alert, and audit queries. License keys are not API credentials. API reference
Password + MFA today; SSO domain discovery/start and SCIM Users lifecycle provisioning in preview. Session controls for operators.
Owners and Admins can enforce MFA for privileged portal roles, switch between authorized organizations, stage IdP metadata, provision and suspend users through SCIM, route deduplicated critical alerts, manage append-only audit retention (archive mode - not a tamper-evident GA claim), roll out TAO through deployment rings, and track measured Security Assurance readiness - without claiming a completed SOC 2 certification.
Deployment
Copy the organization key, download the current TAO build, and enroll endpoints. The same Cloud Portal then shows heartbeat, inventory, and PAM status.
Open Cloud Portal
Start in the Trustity Cloud Portal - then install the agent and enable your modules.