We build deterministic, no-model-in-the-decision-path enforcement for AI interactions and autonomous agent actions — for defense, critical infrastructure, and regulated systems where failure is not an option. Born from decades building high-assurance architectures for classified and national-security systems.
Containment.ai was founded by security engineers who spent decades building high-assurance security architectures for national security and defense systems. We know firsthand that probabilistic alignment approaches fall short in high-stakes environments - you need deterministic, testable enforcement, not probabilistic confidence.
Enable every organization to deploy AI with confidence. We believe that powerful AI models should be accessible to all, but only with deterministic controls that enforce your security and compliance policies. Containment.ai is an AARM-aligned Protocol Gateway — aligned with AARM v1.0, the Cloud Security Alliance specification for governing autonomous AI agents at runtime.
A world where AI deployment is no longer constrained by fear of uncontrolled behavior. Where organizations can innovate rapidly while maintaining a defensible compliance and security posture.
Containment > Alignment. We don't try to make AI models "safe" - we contain their behavior with deterministic policy enforcement that works regardless of the model's internal state.
The principles that guide everything we build and every decision we make
Dedicated to earning and maintaining customer trust through unwavering integrity and technical excellence. We build long-term partnerships with our customers, treating your security and compliance requirements as our own - because your success is our success.
Pioneering the future of cybersecurity, we lead with expertise and a forward-thinking approach. We're constantly pushing the boundaries of what's possible in AI governance - from a parsing path we're building toward formal verification to real-time policy engines, we invest in R&D that matters.
Our solutions are designed to optimize performance and product reliability, not temporary fixes. Deploy in minutes, not months - our browser extension approach means no infrastructure changes, no lengthy procurement cycles, no integration nightmares.
We tackle complex challenges with relentless determination to achieve customer success. We bring decades of experience solving the hardest security challenges in the most critical environments to every customer engagement.
We design to HIPAA, GDPR, FedRAMP, and SOC 2 control requirements from the start, and produce the enforcement evidence those programs need. Certifications are on our roadmap — see Compliance.
Complete visibility into how your AI systems behave. Full audit trails, real-time monitoring, and exportable logs mean you always know exactly what's happening.
CEO & Founder
Irby Thompson is a national security executive and serial entrepreneur with a track record of building successful cybersecurity companies. As CEO and Founder of containment.ai, Irby brings decades of experience in high-assurance security architectures to the challenge of AI governance. He previously launched and grew Pikewerks (acquired by Raytheon), Star Lab (acquired by Wind River/Aptiv), and OP[4] (acquired by Kudu Dynamics/Leidos), where he built technologies addressing critical security gaps in aerospace & defense, embedded systems, and critical infrastructure security. A Vanderbilt and Georgia Tech graduate, Irby is a recognized voice on AI security challenges, particularly the fundamental risks in LLM architectures that mix instructions & data from both trusted & untrusted sources without distinction — i.e. the core problem containment.ai solves.
Our highest-assurance AI cross-domain gateway offering is designed around a parsing path we are building toward formal verification (not yet attested) and one-way data diodes, an architecture originally developed for classified government systems where failure is not an option
We are building the parsing path toward formal verification — applying formal methods to constrain parsers to behave exactly as specified and close whole classes of parser vulnerabilities (verification in progress, not yet attested).
Data flows in only one direction by design, removing the return path an exfiltration attempt would need.
Defense-in-depth with continuous verification. Every request is validated, every response is inspected, and nothing is trusted by default.
Built for organizations across healthcare, financial services, and government that need to secure their AI deployments.