PrivacyPal Max · Agentic privacy & AI enablement

The governance layer for the AI-native enterprise

Everything in Pro, plus the enterprise layer: connect Salesforce, Slack, Notion, SQL, Workday and more to protect your company's secrets and IP. Privacy Agents that travel with every employee, agent governance for Claude Code, Microsoft Copilot & Private MCP, the world's first on-device DSPM, and org-wide AI policy. Built for orgs where AI moves at agentic speed.

$50per seat / mo · billed annually $60per seat / mo · monthly Includes everything in Pro
Max Privacy Core

Privacy Agents on every device

On-device agents that reason about privacy, intent and risk in real time: out of the box, custom-built, or from the marketplace.

Intent Detection Prompt Injection Guard Legal Enrichment Financial Enrichment Marketplace Agent Custom Agent
Connections · exclusive to Max

Protect the systems your company runs on

Max connects to the platforms where your most critical data lives. PrivacyPal learns what's sensitive at the source (customer records, employee data, IP, secrets), so the moment it surfaces in any AI, in a prompt, a paste or an agent's tool call, it's intercepted before it leaves the device.

Salesforce

Salesforce

Accounts, contacts, pipeline and deal terms stay out of every prompt, even when your team puts AI to work on the CRM.

Customer data
Slack

Slack

Channels are where secrets leak. Keys, credentials and internal chatter are recognized and protected everywhere AI reads or writes.

Secrets & comms
Workday

Workday

Compensation, reviews and personal employee records: governed wherever HR and managers put AI to work.

Employee data
Oracle

Oracle

ERP and financials (vendor terms, margins, forecasts): shielded from exfiltration across every AI surface your org touches.

Financials
Notion

Notion

Roadmaps, specs and internal wikis: your IP and know-how stay yours while your team drafts with AI on top of them.

IP & know-how
Google Drive

Google Drive

Contracts, board decks and shared files: classified at the source and protected the moment they meet a model.

Files & contracts
Protected across every AI Customer data Employee data IP & trade secrets Credentials & keys Financials & deals + SQL, Google Docs, Word & more
Everything in Pro, plus Salesforce, Slack, Notion, SQL & Workday connections On-device DSPM Claude Code & Copilot governance Private MCP Org-wide AI controls Privacy Agents
What's in Max · the framework

Four governance pillars for the AI-native enterprise

Max keeps everything you love about Pro (Privacy Twins, real-time on-device interception, SSO) and adds connections to Salesforce, Slack, Notion, SQL, Workday and more, plus the four governance pillars that turn the CISO from blocker into enabler.

01 · On-device DSPM

The first-ever DSPM that lives on the endpoint

Staff devices are the biggest data-breach surface in the enterprise. Max turns every laptop into its own DSPM sensor: discover, classify and continuously monitor sensitive IP, PII, PHI and PCI where it actually lives. No one else does this. It's the wedge that lets you adopt AI safely as on-device language models become the new edge.

02 · Agent & copilot governance

Native control of Claude Code, Copilot & every agent your team uses

Real on-device agent governance, not just a chat wrapper. Max sits inside Claude Code, Microsoft Copilot, ChatGPT and Gemini at the device level. Govern what agents can read, write and exfiltrate. Block, redact or steer in real time across every model and every endpoint.

03 · Private MCP

Your own Model Context Protocol, on your terms

Run a Private MCP that lets your team's agents reach internal tools, data and APIs without those connections leaking back to a public host. Your context. Your tools. Your control plane. Built for the agentic era.

04 · Org-wide AI controls

One policy plane. Every prompt. Every user.

Block models, gate access behind training paths or certifications, intercept and steer prompts, redact at the wire. Discover shadow AI before it hits the breach report. Define what your employees can do with AI, and prove it to your auditors with one click.

The main event · Privacy Agents

The first AI-native security agent protecting your interests

On-device. Autonomous. Purpose-built to reason about privacy, intent and risk in real time, across every AI your team touches. The agents ship out of the box, you build your own, or you pull from the marketplace. This is what governance looks like when it's built for the AI OS instead of bolted onto a legacy stack.

Detection & authorization

Agent & prompt intent detection

Understand what an agent is actually trying to do before it does it. Authorize, alert or quietly redact based on intent, not just keywords.

Adversarial defense

Prompt injection prevention

Catch jailbreaks, tool-call hijacks and exfiltration patterns at the endpoint. The agent reasons about adversarial intent so your humans don't have to.

Vertical enrichment

Legal, Financial & domain agents

Drop in a Legal Agent that knows privilege, or a Financial Agent that knows MNPI. Agents bring vertical intelligence to every interaction, without retraining a model.

Build & marketplace

Bring your own, or pick from the shelf

Customize and ship your own agents, or enable privacy, security and AI agents from the marketplace. Enrich any AI conversation across Claude, ChatGPT, Gemini, Copilot and more.

Same governance. Every model. Every endpoint.

Privacy Agents run on-device, so the same governance applies whether your team is in Claude Code, ChatGPT, Gemini, Microsoft Copilot, or a custom MCP stack you built yesterday. Visibility and control of AI, regardless of which AI.

Claude Code Copilot ChatGPT Claude Gemini MCP + any LLM
Day in the life

Governance, lived from the device out

01

A developer kicks off a Claude Code session on customer code

Agent governance recognizes the repo, the on-device DSPM knows the secrets and PII inside it, and Privacy Twins substitute customer identifiers before any prompt or tool call leaves the laptop. Claude Code keeps moving. Your IP stays put.

02

A sales engineer pastes a customer architecture into ChatGPT

Intent Detection recognizes the workflow, the Legal Agent flags an NDA clause, and Privacy Twins scrub vendor names, all before the request leaves the device. The CISO sees the event in the audit log. Nobody loses time.

03

Microsoft Copilot tries to summarize a finance folder

On-device DSPM has already classified the data as MNPI. Org-wide controls require Copilot users to be in the "client-facing" training cohort. Not enrolled? Blocked at the endpoint. Enrolled? Privacy Twins keep the names out. Either way: no exfiltration.

04

Finance wires up a Private MCP for the GL

Engineers, analysts and a custom Financial Agent all share the same internal context, without that context ever leaving the org. Same fluency. Zero exfiltration. Full audit.

Pro vs Max

Pick the governance footprint that matches your scale

Max is a strict superset of Pro. Use Pro for real-time PII protection on every seat. Use Max when you need connections to your business stack, on-device DSPM, agent governance, and one policy plane across the whole org. For sovereign self-host, see Cloud.

Capability Pro Max
Privacy Twins on-deviceReal-time interception across every AI app, web & desktopIncludedIncluded
PII, HIPAA, PCI & GDPR coverageIncludedIncluded
SSO supportIncludedIncluded
ConnectionsSalesforce, Slack, Notion, SQL, Workday & more: protect your secrets & IPMax only
On-device DSPMFirst of its kind. Every staff device becomes a DSPM sensorMax only
Agent governance · Claude Code & CopilotNative control across real on-device agents, not just chatMax only
Private MCPMax only
Org-wide AI policy & privacy policiesBlock models, require training, intercept, shadow-AI discoveryMax only
Privacy Agents (intent, injection, vertical, custom)Max only
Agent marketplaceMax only
PricingPer seat · save 17% billed annually$18/mo · $180/yr$60/mo · $600/yr
For the AI-native enterprise

Turn your CISO from blocker into enabler

Enterprise AI governance built for how AI actually works: agents, copilots, edge models, on-device language models. Install once. Run silently. Get total visibility across every AI surface your team touches. The shift is here. Don't get lapped.