Collective defense

Every deployment makes every other one safer.

A single company only ever sees its own traffic. NOCTRYS sees the whole fleet. Each deployment contributes privacy-preserving threat signatures — hashes only, never your data — and pulls the shared feed to block attacks first seen somewhere else entirely.

hashes onlynever raw datahost + phrase indicatorsHTTP threat exchangeopt-in
How it works

One block, everywhere

01
A deployment blocks a real attack

One NOCTRYS instance blocks an exfiltration to a malicious host, or a reused injection payload, under its local policy and detectors.

02
It contributes a hashed indicator

Only a stable, non-reversible signature is shared — a host indicator or a normalized phrase hash. No prompts, no arguments, no customer data ever leaves.

03
Every other deployment blocks it on sight

A second company — one that has never seen that attack — blocks the same indicator immediately via a NETWORK_THREAT verdict. Protection arrives before the attack does.

This is the CrowdStrike-style network effect applied to agent security: protection compounds with scale, and it is the one property a customer can never replicate on their own. Software is the on-ramp; the network is the moat.

Privacy by construction

Shared intelligence, zero shared data

The exchange stores only indicator hashes and aggregate counts. Signatures are derived only for universally-malicious categories — exfiltration patterns, prompt injection, canary trips, memory poisoning, tool-drift — never for org-specific rules like your allowlist or spend caps, which would false-positive on someone else’s legitimate traffic. The result is a feed that is safe to consume and safe to contribute to.

2
indicator types — host + normalized phrase
0
bytes of raw customer data shared
1
shared HTTP threat exchange (pull + contribute)
host indicatorsphrase indicatorshashes onlyGET /v1/threatsPOST /v1/threats

Be one of our first five design partners

Free pilot. Two-week, self-hosted integration. You keep the tamper-evident audit and the AI Act compliance report.

Request a pilot →