Agentic {Endpoint}

Discover every AI coding agent running on your developers' machines, audit how each one is configured, and block risky actions before the agent takes them.

Inventory agents, harden their configuration, enforce policy at the moment of action, and know every MCP server they touch.

AGENT INVENTORY

Fleet-Wide Agent Discovery

Find coding agents, MCP servers, skills and plugins on every machine.

CLOSE THE GAPS

Configuration Posture

Flag YOLO mode, approval bypasses and unsafe MCP settings.

STOP THE ACTION

Pre-Action Blocking

Block risky commands and data flows before they execute.

KNOW THE TOOLS

MCP & Skills Intelligence

Risk-score every MCP server against 23,000+ pre-analyzed servers.

Supported agentsClaude CodeCursorCodex CLIGemini CLIOpenCodePi+ more detected by fingerprint
SEE EVERY AGENT

Discover Every Coding Agent

Developers install coding agents faster than security can track them. Pillar deploys through your MDM and inventories the AI coding agents across your fleet: which agents run where, their versions, sandbox state and risk, and everything they can reach, from MCP servers to skills, plugins, subagents and hooks. Posture scans read agent configuration, not source code.

Discover Every Coding Agent

Full Scan and Fingerprinting: Deep scans for Claude Code, Cursor, Codex CLI, Gemini CLI, OpenCode and Pi; fingerprinting for Amazon Q, Antigravity, OpenClaw and more.

MDM Deployment: Roll out with Jamf Pro, Kandji, JumpCloud or any MDM that runs scripts, on macOS, Linux and Windows.

Shadow AI Detection: Flag third-party agents your organization has not approved.

Privacy by Design: Secrets in agent configuration are removed before anything leaves the machine.

CLOSE THE GAPS

Audit Agent Configuration

The same agent is safe or dangerous depending on its settings. Pillar parses each agent's permission rules, approval and sandbox modes, MCP servers, hooks and plugins, and turns risky settings into prioritized issues across permissions, code execution and identity. Each issue maps to the SAIL framework with a severity you control, and stays open until a clean scan closes it.

Audit Agent Configuration

Risky Mode Detection: YOLO mode, Cursor auto-run, Codex approval bypass, disabled workspace trust and missing sandboxes.

Fleet Risk at a Glance: See endpoints at risk, open issues by agent and category, and the MCP servers in use.

Malicious Hook Patterns: Catch hooks and skills that execute code before the model reads them.

SAIL-Mapped Issues: Policies such as Endpoint Agent Sandbox Bypass and Over-Scoped Agent Tool Permissions, with adjustable severity.

STOP THE ACTION

Block Risky Actions Before They Run

A prompt injection becomes an incident only when the agent acts. Runtime Guardian sits in the agent's own pre-tool hook for Claude Code, Codex CLI and Cursor, and decides on every action before it runs. Controls understand the session, tightening once untrusted web or MCP content has entered it. Every decision, blocked or asked, appears in Activity with the full session timeline.

Block Risky Actions Before They Run

Credential Exfiltration Blocking: Stop reads of keys, .env, SSH and cloud credentials from reaching external destinations.

Persistence and Self-Modification: Block committed git hooks that write persistence and agents rewriting their own configuration.

Ask or Block: Off, Monitor or Block per control, with confirmation prompts where a developer should decide.

Managed Enforcement: Decisions run locally and keep working offline; on macOS and Linux, MDM installs managed hooks for Codex and Cursor that developers cannot disable.

KNOW THE TOOLS

Know Every MCP Server Your Agents Use

MCP servers give agents reach into databases, SaaS and the local file system. Pillar inventories every local and remote server across your fleet, shows which agents and endpoints load it, and scores it against a catalog of 23,000+ pre-analyzed servers. Each score breaks down reputation, supply chain, prompt handling, data access and actions, and per-server allow-lists control which tools agents may call.

Know Every MCP Server Your Agents Use

Fleet-Wide MCP Inventory: Local and remote servers, their source, and the agents and endpoints that use each one.

Catalog Risk Scores: A per-version risk score across reputation, supply chain, prompt handling, data access and actions.

Tool Allow-Lists: Restrict which tools each MCP server may invoke, in Monitor or Block mode.

Behavioral Findings: Surface what analysis observed, such as a server contacting an undeclared external destination.

“For the first time, our security team sees every model, dataset, and prompt in a single dashboard—no more chasing blind spots.”

"What impressed us most about Pillar was their holistic approach to Al security."

"We needed a security partner that not only pinpoints vulnerabilities but also helps remediate them automatically."

"By integrating Pillar’s advanced security guardrails, we ensure AI systems access only secure content, protecting our global customers."

QUESTIONS

Agentic endpoint security, answered

What is agentic endpoint security?

Agentic endpoint security protects the AI agents that run on employee machines, such as Claude Code, Cursor and Codex CLI. It covers four layers: discovering which agents are installed, auditing how each is configured, controlling what they do before an action runs, and keeping those controls in place when a developer or the agent tries to turn them off.

Which AI coding agents does Pillar support?

Pillar runs full configuration scans for Claude Code, Cursor, Codex CLI, Gemini CLI, OpenCode and Pi Coding Agent, and detects other agents such as Amazon Q, Antigravity, Codeium and OpenClaw by fingerprint. Runtime Guardian enforces pre-action controls for Claude Code, Codex CLI and Cursor (as of October 2026).

Is EDR enough to secure AI coding agents?

EDR can show that an agent is installed and, in some products, block some agent actions. It does not audit the agent's configuration: permission rules, bypass flags, MCP servers, skills and hooks. Those settings decide whether an installed agent is safe, so most teams pair EDR with an agent posture and control layer.

What data does Pillar collect from developer machines?

Posture scans collect agent configuration and installed skills and don't read source code. Secrets in agent configuration are removed before the report leaves the machine. When Runtime Guardian flags an agent action under one of your policies, Pillar also captures a buffer of that session, so your team can analyze the threat in context.

How is it deployed?

Through your existing MDM, as a script on macOS, Linux and Windows. Runtime Guardian adds a lightweight per-user service and writes hooks into each supported agent's configuration.

GET A PERSONALIZED DEMO

See Pillar in action

Step 1 of 2

In your 30 minute personal demo, you will learn how Pillar:

Seamlessly integrates with your code, AI and data platforms and provide full visibility into AI/ML assets.

Automatically scan and evaluates your AI assets for security risks.

Enables you to create and enforce AI security policies in development and runtime.

Thank you

We've received your message, and we'll follow up via email shortly