Security
Security
Eden Security applies identity, access, data protection, policy, approvals, and audit at the same boundaries used to connect systems and execute work. A route, model, tool, endpoint, or marketplace installation never grants access by itself.
Capabilities
| Capability | What it covers | Start here |
|---|---|---|
| AI & agent security | Model eligibility, budgets, tool policy, prompt controls, and approval gates. | AI Gateway Governance |
| Data access security | Endpoint permissions, command policy, masking, and data boundaries. | Endpoint Governance |
| PII & data loss prevention | Detection, dictionaries, masking, redaction, and content policy. | PII Redaction |
| Identity & access | Human, service, runtime, and agent identity with scoped credentials. | Authentication |
| Policy & governance | Reusable policy profiles and bindings across resources. | Policy Bindings |
| Approvals & audit | Human approval, decision evidence, activity history, and accountability. | Promptless Evidence |
| Event Log | Append-only access, decision, change, agent-run, and execution events. | Event Log |
| Private connectivity | Governed private transport between users, runtimes, and connected systems. | Eden VPN |
Security boundary
Eden resolves the effective actor, organization, resource, credentials, policy, and requested operation before execution. Sensitive values stay behind isolated credential references and content controls. Audit output records the decision and outcome without copying secret material into logs.