Guides

How AI agents get attacked, and how SealGate contains it.

Tool result[email protected]+1 415 555 0134SealGatemasks PIIAI agent + model|<PRIVATE_DATA_9f3a…>||<PRIVATE_DATA_c71e…>|token in tool argumentsreal value restoredThe mapping stays on the gateway, scoped to one user and session.
PII Redaction for AI Agents: Mask Personal Data Before the Model Sees It
PII redaction strips personal data before an AI model can read it. How redaction, masking, and tokenization differ, and how SealGate masks PII in tool results.
AI agenttool callSealGate rulesAccess levelPolicy rules (CEL)Session stateAllowforward to the toolRequire approvalheld for a humanBlockerror back to the agent
AI Guardrails for Agents: Deterministic Rules the Model Can't Override
AI guardrails limit what an AI system can read, say, or do. How LLM and agent guardrails work, and why deterministic tool-call rules survive prompt injection.
Computer use: screenshot, reason, clickscreenshotclick, typeMessagesEmailBankMCP tools: one named call, policy-checkedsearch_chatsSealGatepolicy, approvalMessagesvia Beeper
Claude Computer Use vs MCP Tools
Claude computer use lets Claude control a desktop like a person, by screenshot, click and type. How it compares with MCP tools, and when each is the better fit.
private dataAI agentSealGatechecks every callInternal toolallowedExternal outletblocked
AI Data Loss Prevention (AI DLP): Stop AI Agents Leaking Data
AI data loss prevention (AI DLP) controls what AI agents can read and where that data can go. How it differs from traditional DLP, and how SealGate enforces it.
Private data accessUntrusted contentExternal communicationexfiltration
The Lethal Trifecta
Lethal trifecta - the three-capability threat model behind AI-driven data exfiltration - private data access, untrusted content exposure, and external communication - and how SealGate blocks it.
9:41
ChatGPT 5
Pull my open GitHub issues and draft replies
On it. Reading your assigned issues now and drafting a reply for each.
Ask anything
9:41
ChatGPT 5
Pull my open GitHub issues and draft replies
On it. Reading your assigned issues now and drafting a reply for each.
Ask anything
MCP proxyaggregates tools
MCP Proxy
An MCP proxy server sits between an MCP client and one or more upstream MCP servers, merging their tools into one endpoint and routing every call to the right server. What it is, how to run local (stdio) and remote (HTTP) proxies, and why you put one in front of your MCP servers.
AI agentSealGate gatewayIdentitywho is callingAccessroles · ACL levelsPolicyCEL · approvalsDataPII · trifectaAudit logevery decision recorded, streamed to your SIEM
AI Agent Governance: Identity, Access Control, and Audit for Agentic AI
AI agent governance is the set of controls that decide which AI agents can act, on whose behalf, on which tools and data, and with what record left behind.
Untrusted contentweb · email · documenthidden instructionAI agentreads it, then actsSealGateblocksdatastolen
Prompt Injection
Prompt injection is the top security threat to AI agents - what it is, how direct and indirect prompt injection attacks work, and how SealGate contains them by blocking the Lethal Trifecta rather than trying to detect the injection.
MCP gateway
MCP Gateway: What It Is, How It Works, and How to Choose One
An MCP gateway is one governed entry point between AI agents and MCP servers. How it works, how to choose one, and the best MCP gateways compared side by side.