Veryl Agent Registry · beta opens September 2026

Prove your agents safe.

Every team is building AI agents. Veryl gives each one a verified identity, tests it against your rules before it can act, and writes every action to a record no one can edit. So your whole company can use AI, not just engineers.

A thousand agents or zero — you don't need a fleet to start. Bring one workflow that hurts, and we build and verify your first agent with you in the first week

Under a minute
to know whether an agent is safe. Status is visible, not buried in metadata.
Signed credentials
every verified agent carries a Passport: tamper-evident papers any of your systems can check, even offline.
Isolation by design
strict separation between customers in the managed environment, and single-tenant deployments when you need your own ground.

Why Veryl exists

Every team is building agents. Almost no one can say which ones are safe.

They pile up in notebooks, repos, and chat threads: unreviewed, unversioned, impossible to tell apart. "We have an agent for that" should be an asset. Without verification, it's a liability with a friendly name.

We're building toward something specific: a company where anyone can put advanced AI to work, because the organization set up trust once and every Veryl product carries it everywhere.

The problem we're solving, with receipts
ADOPTION VS CONTROL

82% run agents. 44% have policies.

In SailPoint's 2025 survey of technology leaders, most organizations already run AI agents, and fewer than half have policies governing them. SailPoint sells identity security, so read it as a vendor survey; the gap is still the point.

THE ACCESS GAP

97% lacked AI access controls.

Among organizations that reported an AI-related breach in IBM's 2025 Cost of a Data Breach study, 97% lacked proper AI access controls. The breached population is a subset, and inside it the pattern is nearly universal.

THE PREMIUM

$670,000 added per breach.

The same IBM study prices unsanctioned "shadow AI" at an extra $670,000 per breach on average. Governance is cheaper than the incident it prevents.

Sources and the incidents behind them, including the ones we chose not to cite, are on the problem page.

The product

One product first: Veryl Agent Registry.

We're building the Registry before anything else, because nothing else is safe without it. It's where your rules get set once, and where every agent proves it deserves to run.

Veryl Agent Registry Beta · September 2026

Manage and secure your AI agents. Every agent gets a verified identity called the Agent Passport, earns its verification before it can act, and works inside secure spaces called Rooms with clear limits on what it can and cannot do. Roles keep duties separated, every action lands in a record no one can edit, and one action quarantines a misbehaving agent everywhere at once. Your agents are built, or brought in, and run inside Veryl. That custody is the point: it's what makes fail-closed enforcement possible. If verification can't be checked, the agent waits, and governance bolted on from the outside is advice. This is the product, and everything below shows it working.

The road ahead

Two more products inherit the Registry's rules, in the order that keeps the promise honest.

Veryl Canon Alpha

The trusted source of company knowledge, built by people and agents together, so what agents act on is the same information teams write and rely on. In alpha with a small group of design partners.

Veryl Studio Coming soon

Build and launch AI apps on company data without being an engineer, bounded by the access and approvals already set in Veryl Agent Registry. In design; waitlist members shape the beta.

The rest of the road, from surfaces to the marketplace

Built for regulated work

Agents your industry would recognize.

Veryl is built for the operations and compliance leaders putting their first agents into regulated work. It verifies agents with real access doing consequential work, inside rules your compliance team can read. This is what that looks like by industry, and each one goes deeper on the industries page.

Pharma & pharmacy benefits

A pharmacovigilance triage agent that never buries an adverse event. A prior-auth navigator that cites the actual formulary rule. Certification tests the answers against your policies before a patient is ever in the loop.

pharmacovigilance triage · prior-auth navigation Use cases

Healthcare

Claims intake that reads PHI inside a scoped Room and nowhere else. A scheduling agent that can see calendars but never charts. Access is set per agent, and the audit log shows every touch.

claims intake · patient scheduling Use cases

Financial services

A KYC screening agent whose checks are versioned and re-verified. A suitability reviewer that must cite the rule it applied. When regulation changes, re-verification is the release gate.

kyc screening · suitability review Use cases

Legal

An NDA redline reviewer that flags what it cannot judge. A discovery classifier with an append-only record of every call it made. Privilege stays scoped, and abstention is a passing grade.

nda redline review · discovery classification Use cases

Engineering & construction

A change-order estimator grounded in the actual spec, not a guess. A submittal compliance checker that cites the drawing it checked. Every new version re-verifies before it prices anything.

change-order estimates · spec compliance Use cases

Public sector

A benefits-guidance agent that must cite the actual rule and say "I do not know" rather than guess. The failure mode becomes a failed verification in testing, not a headline. We wrote up the headline version.

benefits guidance · records lookup Use cases

Early access

Get in line for the suite.

We invite people in order, product by product. Tell us who you are and which products you want.

  • Veryl Agent Registry opens to beta users in September 2026. Waitlist members get invites first.
  • Veryl Canon is in alpha with a small group of design partners. Sign up to be next in.
  • Veryl Studio is coming soon. Tell us you want it and help shape the beta.

Join the waitlist

No marketing list. We write when your invite is ready, and that's it.

The platform

What the Registry does.

A controlled repository with verification at its core and one trust gate behind every surface. Everything in this section is the product opening in September.

Trust · Verification

Every agent earns its badge.

Agents move through an explicit lifecycle and can't run until they're verified. Every check produces a Verification Report you could hand to your security team.

  • Automated checks, human judgment. Low-risk agents verify automatically above a confidence threshold; agents that touch knowledge bases or speak with a customer's voice always require a named reviewer's sign-off.
  • Trust that stays fresh. Every verification carries an expiry, 90 days self-attested or 180 with an independent reviewer, and the expiry is enforced: a lapsed agent can't run until it passes again.
  • Quarantine, instantly. One action pulls a misbehaving agent out of every room, workflow, and integration at once.

Illustrative product mock. Names and results are sample data.

Trust · The catalog

See trust before you read a word.

The catalog is your org's single source of agents, grouped by trust tier. Every row leads with a status spine, so you never have to read to know whether an agent is safe. You see it.

  • Status is a visual dimension, not metadata in a side panel.
  • Versioned like software. Every version carries a digital fingerprint (a content hash) — change anything that matters and it's a new version that owes a new verification.
  • Search by meaning. Semantic search across agents and their knowledge, so the right agent gets found instead of rebuilt.

Illustrative product mock. Agents and counts are sample data.

Trust · Agent Passports

Proof that travels with the agent.

When an agent leaves Veryl, exported to another tool or another company, it carries a Passport: a signed, portable credential of exactly what was verified, when, and by whom.

  • Tamper-evident. A Passport is cryptographically signed; anyone can confirm it's genuine without calling Veryl to ask.
  • Live status on demand. One call tells you whether the agent is still verified, or has since been quarantined.
  • Built to last. Signing keys rotate on your schedule, and every Passport already issued keeps verifying.

Governance

Everything on the record. Everyone in their lane.

Veryl enforces governance in the request path, not in a PDF. Duties are separated by role, every action lands in a tamper-evident log, and the risky moments always pass through a human.

  • Roles that map to reality. Builders create, reviewers sign off, admins govern, collaborators use. Separation of duties is the default.
  • An audit log that can't be edited. Once an entry is written, it's permanent. Not even an admin can change it. Every action names who did it, from which surface, at what time.
  • A person at every risky step. Sending an email, passing a workflow gate, granting a tool: the actions that matter wait for approval.

Illustrative product mock. Entries are sample data.

Where people work · Rooms

People and agents, working in the open.

Rooms are shared spaces where your team collaborates with verified agents in real time. Invite a colleague, add an agent, and work. Every turn is attributed, streamed, and kept.

  • Built for non-builders. Collaborators don't configure anything. They join a room, and the trusted agents are already there.
  • Multiple agents, one conversation. Agents with different expertise work side by side, orchestrated in one thread.
  • Nothing off the record. Transcripts, approvals, and agent actions land in the same append-only audit trail as everything else.

Illustrative product mock. People and messages are sample data.

The trust system

Three tiers. One glance.

Color in Veryl means exactly one thing. Blue is action. Green, amber, and red are reserved for trust, never decoration. Learn the code once; read it everywhere.

Trusted
Verified · reviewed Verified · auto-checked

Cleared for use: everything trusted reads Verified. A filled badge was signed off by a named reviewer; an outlined badge passed automated checks. Both carry a freshness date, and a lapsed badge can't run.

In progress
Verifying Action needed

Being checked, or waiting on its builder. In-progress states are never green; there is no such thing as almost trusted.

Do not trust
Quarantined Retired

Quarantined agents are blocked everywhere, immediately. Retired agents remain in the record, struck through, never silently deleted.

A green badge without a date is a defect. verified · re-verifies in 12d · freshness is part of the signal

The artifact

What trust looks like on the wire.

This is an agent's Passport: the tamper-evident credential behind every badge. Nobody on your team has to read one. The tools they work in check it automatically, every time the agent runs. In plain terms: a sealed inspection sticker your other software can read.

The design and threat model, for your security team

Get started

Fifteen minutes, once you're in.

The Registry beta opens in September 2026. When your invite lands, you start in our managed environment in under 15 minutes, or we provision your own single-tenant deployment on AWS or Azure. Either way, we host and operate it. Nothing for your team to install.

  • For your team. Sign in and work. No servers, no setup, no maintenance windows on your calendar. We operate the environment.
  • For your security review. Strict isolation between organizations, encryption at rest, an append-only audit log, and every integration off until you enable it.
  • For large deployments. We'll provision your dedicated environment in the region you need, or inside your own AWS or Azure account.
  • Starting from zero? You don't need a drawer full of agents to begin. Bring one workflow that hurts, and we build and verify your first agent with you in the first week.

veryl.ai

Make "we have an agent for that" an asset.

Veryl Agent Registry opens to beta users in September 2026. Waitlist members get their invites first.