For Enterprises

Build agentic AI
your auditors will sign off on.

One VM. Unlimited cryptographic identities. Tamper-evident audit trails. Runs in your cloud. The CISO and the business owner finally agree on the same architecture.

Request enterprise pack Download the whitepaper See enterprise pricing

What hurts today

CISO blocks agent deployment

Business owners want agentic AI for claims, underwriting, clinicals, fraud, customer ops. Security and compliance teams say no until they can trace which agent did what.

Auditors can't trace agent actions

OAuth and PKI weren't built for autonomous agents. Logs don't prove "which agent, on whose behalf, with what evidence." Regulators are tightening through 2026.

Regulatory pressure is real and accelerating

EU AI Act, India DPDPA, HIPAA, FinCEN AML rules, ISO 42001. All require provable AI provenance. None are satisfied by token-bearer patterns.

Regulatory pressure landscape
EU AI Act
High-risk AI systems require traceable provenance and risk management
2026
India DPDPA
Significant Data Fiduciaries must demonstrate accountability for automated decision-making
2026
HIPAA
PHI processing by AI requires the same audit trail as human access
Ongoing
FinCEN AML
AI-assisted screening decisions must be reconstructable and defensible
Ongoing
ISO 42001
AI management system standard: operational evidence of identity, access, audit
Adopted
What HexaEight does

A defensible identity layer for regulated agentic AI

Provision a Marketplace VM in your own cloud account

Spawn unlimited cryptographic identities: one per agent, one per workflow, one per business unit. The VM runs in your VPC, your cloud account, your control. HexaEight infrastructure never sees your data.

Every agent gets a machine-bound cryptographic identity

No shared keys. No rotation theatre. No coordination across teams. The identity is bound to the machine it runs on, with the same cryptographic primitive across your entire fleet.

Runs in your cloud account — portable to your compliance boundary

The same HexaEight server code runs on a Marketplace VM inside your own Azure subscription and VPC. For data-residency, sovereignty, or customer-data-center requirements, the identity layer sits inside your compliance boundary — deployable within your own FedRAMP / Azure Gov boundary under your authorization, not a shared multi-tenant service.

Inherits Azure's compliance posture at the infrastructure layer

SOC 2 Type II, ISO 27001 / 27017 / 27018, HIPAA BAA, FedRAMP (Azure Gov) — inherited from Azure at the infrastructure layer. Our own SOC 2 is on the roadmap, not yet issued. Full enterprise pack available on request.

Built on Azure

Inherited compliance from day one.

The HexaEight platform runs on Microsoft Azure. Infrastructure controls inherit directly from Azure's attestation portfolio.

SOC 2 Type II
Azure attestation
ISO 27001 / 27017 / 27018
Azure attestation
HIPAA BAA
Azure inheritance
FedRAMP
Azure Gov regions
Standard primitives

Built on recognized standards.

The encryption layer uses only NIST- and IETF-standard building blocks — no home-rolled ciphers in the data path.

AES-256-GCM
NIST FIPS 197 / SP 800-38D
SHAKE-256
NIST FIPS 202 (SHA-3)
KMAC-256
NIST SP 800-185
ChaCha20-Poly1305
IETF RFC 8439
Runs inside your boundary

The same code can run in your own cloud account.

For data-residency, sovereignty, or customer-data-center requirements, HexaEight deploys as a dedicated, single-tenant instance inside your own Azure subscription and VPC — the identity layer sits within your compliance boundary rather than a shared multi-tenant service, so it is deployable inside your FedRAMP / Azure Gov boundary under your authorization (the ATO is yours, not ours). Deployment models and scoping are covered in the enterprise pack.

What you buy

Enterprise pricing

Flat per-core pricing, no per-seat or per-MAU billing. Azure Marketplace VM available today, AWS and GCP coming.

Recommended
Azure
$144 / core / month

One Marketplace VM, unlimited identities under your own domain. Support & SLA included as a Microsoft ISV partner.

Business
$72 / core / month

Multi-user authentication by agents on your own machines — any registered user connects, no per-MAU or per-seat billing.

Signing
Coming soon tamper-evident audit trails

Offline-verifiable signing for regulator- and court-ready audit trails. Self-attestation free; registry attestation in development.

BYOA · Bring Your Own Agent

Fund your team's personal agents — from $20/core/mo

Give each employee a Personal license. Every agent is owner-locked to that employee's own HexaEight email — no one else, not even other staff, can log in, share, or impersonate it. A built-in security control, not just a price tier. Business support covers these personal agents too.

See Personal
Request the enterprise procurement pack
Includes Security & Trust Overview, Business Continuity, Sub-processor List, Compliance Summary, and Architecture docs (DPA on request). Our cryptographic algorithm is public — independent review welcomed.