LYNX
AI Agent Security for Kubernetes
Your AI agents are making decisions. Do you know what they're authorized to do?
The unified control plane for AI agent discovery, identity, authorization, and runtime enforcement for every agent in your organization running on Kubernetes. Guardrails, not gates.
Request Early Access Read Our Whitepaper
Unified control across teams
For AI & Platform Engineering Teams
- Deploy agents faster with comprehensive observability
- Runtime enforcement without blocking workflows
- Identity and authentication for every agent
For Security Leaders
- Complete visibility into every agent; shadow agents too
- Zero-trust authorization enforced before every action
- Full audit trail for compliance and incident response
Problem
AI agents are proliferating faster than your ability to control them.
Enterprises are rapidly deploying AI agents to automate workflows and accelerate decision-making in Kubernetes environments. This introduces three security and operational challenges:
Visibility Gap
Most organizations cannot discover all the agents running in their environment, including shadow agents deployed by individual teams. You can't govern what you can't see.
Autonomous Behavior
Unlike traditional microservices, AI agents autonomously decide which tools to call, which data to access, and which agents to collaborate with. Static, perimeter-based security wasn't designed for this.
Non-Determinism
AI agents don't follow predictable execution paths. Every interaction is a potential security and governance event, and traditional security tools built for deterministic services cannot provide the visibility or control required.
Solution
Guardrails, not gates. Security and governance that enables your AI teams to move fast, safely.
Lynx is a cloud-native enforcement layer purpose-built for autonomous agents. It sits in the middle of all agentic traffic across Kubernetes clusters to discover, authenticate, authorize, and observe every agent action in real time.
Every agent is known. Every identity is verified.
Every action is authorized before it happens. Every interaction is traceable.
Capabilities
Everything you need to govern AI agents at enterprise scale.
Universal Discovery & RegistryKnow every agent, registered and shadow alike
Agent Identity & AuthenticationCryptographic agent identity that eliminates shared secrets
Authorization & Access ControlZero-trust authorization before every agent action
Runtime Policy EnforcementReal-time enforcement, centrally managed, consistently applied
Observability & AuditComplete visibility, audit lineage, and compliance-ready telemetry
Central Registry
A structured directory for your agentic workforce that catalogues owner, purpose, version, and context for every agent running on Kubernetes, with full lifecycle management APIs
Auto-Discovery of All Agents
Automatically discovers registered and shadow agents using heuristics and eBPF — no manual inventory required
Full Lifecycle Management
Tracks agents from deployment through decommission with version history and ownership attribution
Cryptographic Identity
Uses SPIFFE/SPIRE or your existing identity provider to issue verifiable, short-lived cryptographic identities (SVIDs) to every agent
No Shared Secrets
Eliminates long-lived API keys with automatically rotated tokens (TTL ~10 minutes), significantly reducing attack surface
Chain of Custody
Tracks "On-Behalf-Of" delegation chains — always know whether an agent is acting autonomously or on behalf of a human user
IDP Integration
Works with Microsoft Entra ID and existing identity providers — no rip-and-replace required
Tool Binding
Restrict which MCP servers or tools an agent can access at the individual tool level
Fine-Grained Access Control
Define permissions using multiple attributes: agent identity, service, namespace, data class, operation type, time of day, and more
Default Deny Model
Every agent interaction starts from denial. Agents act only on explicit authorization — never implicit trust
Contextual Authorization
"Agent A can read CRM data but cannot export it. Agent B can read CRM data for users in the EMEA region during business hours only"
Real-Time Enforcement
Policy evaluated and enforced before every data access, tool call, or service invocation — automatically, without human intervention
Break Glass Controls
Immediately revoke or quarantine a rogue agent; instant response without waiting for a manual process
Centralized Administration
Policies defined centrally and enforced consistently across every environment where agents run
Distributed Enforcement Points
Deploy AI agents on Kubernetes clusters across on-premises, cloud, and edge under a unified control plane
CI/CD Integration
Register agents and define policies as part of your existing pipeline — security and enforcement built in from the start
Service Graph
Real-time visual map of agent-to-agent and agent-to-tool interactions. Surface dependencies and anomalous behavior before they become incidents.
Audit Lineage
Full trace of Agent → Decision → Tool → Data for compliance reporting, operational debugging, and forensic investigation.
OpenTelemetry Standard
Exports telemetry in OTEL format. Compatible with your existing observability stack.
Seamless Integration
Native integrations with Datadog, Splunk, and Prometheus.
Compliance Framework Support
Designed to support SOC 2, ISO 27001, NIST AI RMF, and GDPR requirements, with audit trails and policy enforcement records that map directly to regulatory reporting needs.
DEPLOYMENT
One security and governance standard.
Lynx meets you where your agents are.
Self-hosted
Lynx is a Kubernetes-native gateway deployed in your cluster, sitting in the middle of all agentic traffic and enforcing policy at runtime. Control and data plane fully managed by you.
Ideal for: Kubernetes-native agent deployments requiring full control over data residency.
Why TIGERA?
Proven Policy Foundation
The enforcement engine behind Lynx secures 8M+ Kubernetes nodes daily. Enterprise-proven at the most demanding scale.
Purpose-Built for Agents
Not IAM stretched to cover agents. Not CASB repurposed for a new problem. Built from the ground up for autonomous, non-deterministic, distributed AI agents.
Guardrails, Not Gates
Real-time enforcement that enables AI & Platform Engineering teams to move fast — not a bureaucratic control layer that creates bottlenecks and drives workarounds.
Enterprise Expertise
A decade alongside NVIDIA, RBC, Bloomberg, and many more. That accumulated knowledge ships with every product we build.
AI agents are already making decisions in your organization. Are they authorized to?
Lynx gives security, AI, and platform engineering teams the visibility, authorization, and enforcement controls to safely deploy AI agents, anywhere in your Kubernetes environment, at enterprise scale.