Runlayer
by Runlayer
The enterprise MCP gateway and control plane that lets AI agents reach your systems without going rogue.
Runlayer is an enterprise MCP (Model Context Protocol) gateway and AI control plane that lets security and IT teams govern how AI agents connect to internal tools and data. It is built for CISOs, CIOs and platform teams who want employees to build agents freely while keeping identity, permissions, audit and spend under central control.
Runlayer is a model-neutral control plane for enterprise AI agents, built around the Model Context Protocol (MCP) — the open specification that defines how AI agents plug into enterprise systems and data. The platform combines agent enablement with security and governance in one system: it discovers 'Shadow AI' (unmanaged agents and integrations already running inside the company), brokers agent access to more than 18,000 pre-built MCP connectors through a central gateway with a catalog and approval workflows, enforces identity-scoped permissions by integrating with providers such as Okta and Entra, scans tool calls in real time for prompt injection and sensitive-data leakage via its Guard capability, and attributes AI spend across teams. It supports the AI clients enterprises actually use — Claude, Cursor, ChatGPT, Codex, vertical AI apps, independent agents and platforms like Salesforce Agentforce. Founded in 2025 by three-time founder Andrew Berman with Tal Peretz and Vitor Balocco (all previously at Zapier), Runlayer launched from stealth in November 2025 with an $11M seed and raised a $30M Series A on June 24, 2026 co-led by Felicis and Khosla Ventures, bringing total funding to $42M. Early adopters include Gusto, Instacart, dbt Labs, Opendoor, Decagon, Lemonade, AngelList and PagerDuty.
At a Glance
- Category
- Governance & Security
- Pricing
- Contact for pricing
- Target Market
- CISOs, CIOs, CTOs, Platform Engineers, Enterprise Developers, IT Security Teams
- Founded
- 2025
- Customers
- Eight unicorns plus several public companies, including Gusto, Instacart, dbt Labs, Opendoor, Decagon, Lemonade, AngelList and PagerDuty
Key Features
- ✓Enterprise MCP gateway
A central gateway that brokers every AI client's MCP requests to internal tools and data, with a catalog of 18,000+ pre-built connectors and approval workflows.
- ✓Shadow AI discovery
Surfaces unmanaged AI agents, MCP servers and integrations already running across the company so security teams can bring them under policy.
- ✓Identity-scoped permissions
Integrates with identity providers such as Okta and Entra so an agent inherits only the permissions of the user it acts for.
- ✓Guard real-time scanning
Inspects tool calls and returned data in real time for prompt injection and sensitive-data leakage before they reach the model.
- ✓Agent builder
An on-demand builder that lets employees compose agents from reusable skills, internal APIs and approved connectors.
- ✓AI spend attribution
Monitors AI usage and cost and attributes it back to teams, agents and tools for chargeback and budgeting.
Capabilities
Use Cases
- •Safe employee-built agents
Let engineering, ops and business teams build their own agents against a pre-vetted connector catalog instead of wiring unmanaged MCP servers themselves.
- •Agent security and audit
Give security teams a single audit trail and real-time threat detection across every agentic action taken in the company.
- •Shadow AI governance
Find and govern the AI clients and MCP integrations employees have already connected to production systems.
Ideal For
Best For
- ✓Governing which enterprise systems and data AI agents are allowed to touch
- ✓Discovering and shutting down unsanctioned 'Shadow AI' agents and MCP servers
- ✓Giving business teams a safe, approved catalog of MCP connectors to build agents from
- ✓Auditing and attributing AI agent activity and spend across an organization
Market & Ratings
Eight unicorns plus several public companies, including Gusto, Instacart, dbt Labs, Opendoor, Decagon, Lemonade, AngelList and PagerDuty
Market Analysis
Pros
- ✓Solves a problem enterprises hit immediately once agents touch real systems
- ✓Model- and client-neutral, so it does not lock a company into one AI vendor
- ✓Strong early logo list for a company founded in 2025
Cons
- ✗Very young company (founded 2025) with a short production track record
- ✗Value is tied to MCP remaining the dominant agent-integration standard
- ✗No public pricing or self-serve tier
Pricing
Enterprise
Contact for pricing
- ✓MCP gateway
- ✓18,000+ connectors
- ✓Guard real-time scanning
- ✓Identity-provider integration
- ✓Audit logs and spend attribution
Runlayer does not publish pricing; the product is sold as an enterprise engagement.
Sources
This page was written from 3 sources, 1 on domains other than runlayer.com.
Stay Ahead of the Curve
Weekly enterprise AI insights for technology leaders. No spam, no vendor pitches—unsubscribe anytime.
SubscribeRelated Products
NeuralTrust
Discover, secure and govern every AI agent in the enterprise from one gateway
Stairwell Backstory
Agentic malware investigation that maps blast radius from every executable you have ever run
Drata AI Agent Governance
Discover every AI agent, block policy violations inline, and prove it to an auditor
Hush Security
Kill standing credentials — discover every AI agent and broker just-in-time access at runtime