Securing the agentic AI software supply chain

Where Aephix fits your workflow.

Aephix turns one flagged artifact into the wider operation behind it, with confidence and evidence. These are the jobs it is built for, before an attack reaches a build and after one is already in hand.

The jobs it is built for.

Every job ends at the same outcome. You start with one artifact and walk away with the operation behind it.

AppSec and platform
Vet a package before you install it

Check a flagged package against the wider operation behind it before it reaches a build, so one bad dependency does not pull in the rest.

  • The operation behind the package, not just the file
  • Every other package tied to the same campaign
  • An exportable blocklist for your registry and CI
See the analysis →
ML and platform
Vet a model before you load it

Check a model file for the operation behind it before it runs in your pipeline, and whether it links to a campaign you have already seen.

  • Provenance for a model, weights, or skill file
  • The campaign behind a malicious upload
  • A confidence level with supporting evidence
See the analysis →
Agent tooling owners
Vet an MCP server or skill before you connect it

See the operation behind an MCP server or skill before an agent trusts it, with its footprint across other marketplaces in the same answer.

  • The operation behind a server or skill
  • Its footprint across registries and marketplaces
  • What to block before you connect
See the analysis →
Threat intel and IR
Expand an artifact you already found

Take a malicious package, model, skill, MCP server, extension, or container you already caught and get the rest of the operation it belongs to, with a confidence level and supporting evidence.

  • The wider operation an artifact in hand belongs to
  • The full footprint, not the single file
  • Evidence you can put in a report
See the analysis →
A worked example

The Miasma campaign started as one hijacked package. Aephix traced it to 23 across npm, PyPI, RubyGems, and JFrog, linked to a single operation with supporting evidence on file.

See the analysis
What you walk away with.

The same answer for every job above, calibrated and explainable.

Linkage
The other artifacts that belong with this one, within and across ecosystems.
Campaign
The wider operation the artifact belongs to.
Confidence
A calibrated level with the evidence it rests on.
Blocklist
An exportable footprint for your CI, EDR, and secret scanners.

Aephix is in private beta. Sleuth is shown to design partners, and these are the workflows we are onboarding them into.

Block the operation, not just the artifact.
Get early access