Myrmex

Security at Myrmex

Security by design. Control over every action.

Giving AI the ability to act requires clarity about access, credentials and accountability. See how Myrmex organizes these boundaries, from the connected environment to the change record.

AI requests an action. The integration uses the credential.
AI agent
Integration reference + action
Integration service
Managed credential
Connected system

Credentials managed by integrations are resolved server-side. The AI agent references the integration by ID without receiving the secret.

How integrations work

AI guardrails

Every action passes through the right controls.

Before acting, Myrmex considers context, impact and reversibility. Guardrails combine permissions, risk assessment, human approval and execution containment.

Illustrative example

Proposed operation

Read a firewall configuration

Read operation within authorized scope

Read permitted

The query can proceed with the required permissions. Reading an asset does not grant permission to modify it.

Queries follow granted permissions. Write actions require a plan and human approval; irreversible operations with maximum impact are blocked by the engine.

Intervene during execution.

The kill switch contains autonomous execution and prevents new actions from being dispatched. Time and inactivity limits can also terminate execution.

Stopping does not undo a change already completed on the target. Reversal requires a compensating action with its own approval and record.

Review after the action.

Interaction, decision and execution records support investigation. Operator feedback and reporting channels help investigate unexpected behavior.

Permission to read does not mean permission to execute.

Role-based access separates reading, execution and administration. Asset groups define accessible resources. In Enterprise, attribute policies add conditions to the permissions granted by a role.

ReadView information and investigate
ExecuteAct on authorized resources
AdministerManage settings and access

Illustrative permission separation. Roles and their scopes should reflect the team’s actual responsibilities.

Enterprise identity controls

SSO

Connect authentication to your corporate identity provider.

RBAC

Define permitted actions by role and the accessible asset groups.

ABAC

Add conditions such as source network, time, MFA and device.

A change needs an accountable decision.

In change management, a plan goes through approval before execution. The context’s rule defines who approves and how many approvals are required. Explore what happens in each situation.

Read documentation

Approving a patch also authorizes its window.

Standard changes require execution to be started after approval. Approved patches may install automatically in their scheduled maintenance window.

The history includes what went wrong.

An execution may finish as completed, partial or failed. Approvals and rejections record the user and time to support review.

Illustrative example

Adjust a firewall rule

Context: production

Example rule: two named approvers

Awaiting a decision1 of 2 approvals

The change is not yet ready to execute.

Decision record

Approval recorded

Responsible person
Infrastructure owner
Time
09:41

Security owner: decision pending

Sample data. Separation of duties depends on configured permissions and rules. The default allows one approval, including by the requester.

The identity used to act matters, too.

A shared service account and an individual credential serve different needs. For compatible integrations, choose the model that fits your operation.

The team uses a service account.

This is the default model. People with integration access use the credential configured by the organization. That account’s privileges need to match the operational scope.

Read documentation

The secret stays out of the model request.

The integration service resolves the credential to execute the action. This protection applies to managed credentials; documents, tool outputs or secrets typed into a conversation require care with the content you share.

Private mode depends on connector support and a valid credential linked by each user.

Cryptography and evolution

Protection today. Room to evolve with cryptography.

Data protected in transit and at rest, with an architectural direction guided by crypto agility: adapting cryptographic mechanisms as risks and standards evolve.

Protection in operation

Layers with distinct roles

Transport encryption, stored-data protection and device identity address different parts of the architecture. Keys, algorithms and protocols need to be assessed in context.

TLSAES-256-GCMRSA 4096
Examine network requirements

Architectural direction

Crypto agility

An architecture guided by cryptographic agility prepares for changes to algorithms, protocols and key management. Each transition considers compatibility, dependencies and operational continuity.

  • Identify cryptographic uses
  • Assess algorithms and dependencies
  • Validate the transition by layer

Crypto agility also guides preparation for new standards, including post-quantum cryptography. Adoption is assessed per component against deployment requirements.

Reference: NIST crypto agility

The agent initiates the connection. You approve the device.

The agent installed on the host establishes an encrypted outbound connection to the platform. A newly enrolled device needs manual approval before becoming active.

Your environment

Agent on the host

Approved device

Connection initiated by the agentOutbound TCP 443 / TLS

Telemetry and commands on the established channel

Myrmex platform

The outbound channel also carries returning commands. It does not mean offline operation or all processing taking place in the client’s environment.

Device identity

RSA 4096

The key pair is generated on the host. The private key stays on the device.

Session protection

AES-256-GCM

A session key protects the data sent by the agent.

Encrypted transport

TLS

Traffic travels through an encrypted transport channel to the platform.

What about systems inside the network?

The Collector reaches internal systems over SSH or APIs. Their access permissions and firewall, proxy and TLS inspection rules need to be part of the deployment design.

Examine network requirements

Your operational context belongs to your organization.

Myrmex keeps operational context segregated by organization. Conversations and reports can form this memory, helping teams resume investigations and decisions with continuity.

Read the Privacy Policy

Data, availability and support requirements are addressed during the review. This page does not replace contractual commitments.

Operational memory and the use of data for training

Retaining context to support your operations is different from training model weights. During an Enterprise assessment, we formalize non-training commitments, data handling by AI components and the responsibilities of the services involved.

Where is data held, and for how long?

Processing and storage locations, retention, deletion and support access should be assessed for your scope. Specific requirements should be included in the proposal and contractual documents.

What does the organization need to demonstrate?

Match operational history to your audit, retention and incident response requirements. Centralized audit logs are an Enterprise capability; immutability requirements and export formats need to be confirmed.

A review that reaches the right level of detail.

Bring a use case and your requirements. Start with documented mechanisms, then work through the specific conditions your organization needs.

Security through the development lifecycle, too.

DevSecOps

Security scans in the CI/CD process before updates are released.

Agent integrity

Digitally signed binary, hash verification and progressive update rollout.

Security testing

Internal and independent testing covers the product and AI components. Evidence can be requested through a confidential channel.

What to review together

  • Initial environments and permissions
  • Data, models and retention
  • Approval and separation of duties
  • Support, continuity and responsibilities
Talk to our security team

Auditing framework controls or producing evidence does not amount to certification of the product or organization.

Questions from the people accountable for operations

Does every AI action require human approval?

Queries can proceed within granted permissions. Write actions require a plan and human approval. Change management can add approvers and rules: standard changes are explicitly started after approval; previously approved patches may run during the scheduled maintenance window.

Are SSO and ABAC available in every plan?

Standard SSO and RBAC are included in Business and Enterprise. Attribute-based policies (ABAC) belong to Enterprise scope. Every plan includes permissions and change authorization. The design also considers asset groups, workspaces and privileges granted in the source system.

Does the agent need an inbound port open to the internet?

For agent-to-platform communication, the host initiates an outbound connection on TCP 443. The established channel carries telemetry and commands. A Collector deployment also needs access to internal systems over their respective protocols.

How should we assess the risk of an incorrect AI response?

Review the scope, permissions, proposed plan and approvals before execution. Start in a bounded environment and verify the result of each change. Controls support that supervision; they do not guarantee that every response or proposed action will be correct.

Bring your security requirements into the conversation.

From your first connected environment to Enterprise requirements, let’s examine the scope with your team.

Myrmex is developed by AINEXT Tecnologia. Meet AINEXT

Talk to our security team