VARC intercepts and governs AI agent actions before they execute — across every major enterprise system. No policy rewrites. No code changes. Now with OWASP 2025 agentic security coverage.
Three new attack classes in OWASP 2025 target autonomous agents mid-session — inside the execution loop, invisible to boundary tools. VARC is the only governance platform covering all three.
Existing security tools — SIEMs, EDRs, prompt firewalls — operate at the boundary. They see instructions come in and results go out. VARC operates inside the execution loop — scoring every instruction, every tool response re-entry, and every session turn against a behavioral baseline.
Goal hijacking, memory corruption, and sleeping giant attacks are invisible to boundary tools.
ServiceNow governs which agents exist and what workflows they completed. VARC governs whether each instruction was safe to execute — and proves it cryptographically, per interaction, before the agent acts. These are complementary, not competitive.
ServiceNow AI Control Tower GA: August 2026. VARC: Live in production today.
Every AI agent interaction passes through a 6-phase runtime pipeline before delivery or blocking. No LLMs in the enforcement path — deterministic by design.
A false positive at L4 does not kill a legitimate agent. It routes to a named human reviewer with full evidence. Proportional to risk — by design.
Deterministic. No LLMs in the enforcement path. Engineering rigor, not AI magic.
VARC governs AI agent actions across every major enterprise system category — before the action executes.
Every other tool does part of the job. VARC does the part nobody else does — runtime interception before the action executes.
| Capability | VARC | Governance Platforms | Observability | Prompt Firewalls |
|---|---|---|---|---|
| When enforcement happens | Before execution | Policy only | After the fact | Single prompt |
| Per-interaction scoring | 8-dimension BEV | No runtime scoring | Single metrics | Binary pass/fail |
| Graduated response | 5-level GRO | Policy only | Alerts only | Block or allow |
| Session awareness | CUSUM multi-turn | None | Model drift only | Single prompt |
| Obfuscation detection | GAN adversarial verifier | None | None | None |
| Agent identity | A-JWT cryptographic tokens | None | None | None |
| Enterprise environments | 52 MCP servers | API integrations | Logs only | None |
| Evidence chain | SHA-256 WORM-locked | Flat logs | Flat logs | None |
| Compliance frameworks | 692 live API | 5–15 packs | None | None |
| CMMC Level 2 | 89.3% — SSP v1.0 complete | Not covered | Not covered | Not covered |
| OWASP 2025 agentic | Goal hijacking + memory corruption | None | Partial | None |
| Shadow AI discovery | Network scan | Manual inventory | None | None |
| GCP Marketplace | Live — use EDP credits | Some | None | None |
692 live frameworks. Cryptographic attestation per interaction. WORM-locked audit trail. Not a compliance dashboard — regulatory proof.
All three certification blockers resolved and live in production.
Runtime governance calibrated per industry. What scores L2 in banking is different from healthcare or government — by design.
13 governance modules. 180+ sprints. Deployed on Google Cloud Run. Govern your first AI agent in under 60 seconds.
Available now on Google Cloud Marketplace. Use your existing GCP committed spend.
All plans available on Google Cloud Marketplace — apply against your GCP committed spend (EDP credits)
Technical deep dives, compliance guidance, and market analysis.
No code changes. No policy rewrites. VARC wraps your existing agents.