Private beta · Accepting early users

Governed execution layer for AI agents

Plan with AI. Keep execution Vaulted.

Wrap your existing agents inside an audit boundary — secrets never enter prompts, every step is event-sourced, and any failed run replays from the original plan.

Built for enterprise governance
Human Approval Gates
Bring Your Own Key (BYOK) for AI providers
MCP & API Execution
Audit-Ready Replay
Webhooks
Knowledge Bases
Self-hosted · VPC-ready
Semantic Routing Cache
PlanVault · Execution Review
AI Agent requested

Refund invoice #INV-4821 - $12,450

Policy check

Finance approval required above $5,000

Status

Paused - Awaiting human approval

Actions
Execution evidence
State preserved
Audit log captured
Secrets protected

Illustrative example

Self-hosted · VPC-ready · Air-gapped capable · Your models via LiteLLM

1,000+

API endpoints importable via OpenAPI

0

plaintext secrets or raw queries stored · by design

Every

every run recorded

100%

event-sourced · audit & replay
Product

Governed Execution Layer

Your AI decides what should happen. PlanVault validates the request, enforces policy, protects credentials, executes through approved API routes, and records evidence for review.

Approval Gates

AI can draft the action, but high-risk writes, refunds, exports, and database changes pause for human approval.

Prompt-Safe Secrets

Credentials and sensitive operational details stay out of prompts and are applied only through controlled execution paths.

Resilient Execution

Failed or interrupted workflows preserve state, expose drift, and resume only after the issue is safe to continue.

Audit & Replay

Every decision, policy check, approval, and execution step is captured for debugging, compliance, and post-incident review.

Product

How it works

planvault · exec-4f2a

Deploy billing service to prod

Received

User · billing-svc · production

Deploy billing service to prod

Session loaded. Routing tools before calling the planner.

project:

billing-svc

env:

production

policy:

finance-approval

model:

gpt-4o

Session loaded

Catalog: 1,247 tools

Correlation attached to run

Our Position

Give AI the freedom to plan — but keep full control over execution.

Where we fit

The infrastructure that makes agents safe to run.

Chatbots

Useful for answers and drafts, but weak for controlled business actions, approvals, and audit evidence.

Agent Frameworks

Great for building agents, but production controls, audit, integrations, and operating model often stay on your team.

PlanVault
GOVERNED ✓

Works with existing agents, knowledge bases, MCP tools, APIs, and webhooks; validates, approves, executes, and records every action.

From integration to go-live

Integrate from zero to production in weeks, not quarters

Your existing team. No vendor lock-in. Self-service from day one.

Organization configured

Organization

Security keys, roles, knowledge base, and global settings at org level

Signing keys and API keys stored in encrypted envelope storage

RBAC: owner, admin, operator, reader — granular permission matrix

Knowledge base connected to your embedding provider for contextual retrieval

Deployment

Runs wherever your data lives

Self-hosted

Your infra, your data

VPC-ready

Private network deployment

Air-gapped capable

Isolated when you need it

Your models via LiteLLM

Any provider or local model

Full control over every step of AI execution

Your AI decides what should happen. PlanVault validates the request, enforces policy, protects credentials, executes through approved API routes, and records evidence for review.