Skip to content

Self-hosted · Vendor-neutral · Open-core

Integrate, manage and secure AI in your enterprise — built around Claude.

Give Claude and the rest of your AI the context, resource access and managed sessions to do real work — and give yourself the granular permissions, policy, budgets and audit evidence to run all of it. It complements Claude; it does not compete. Self-hosted and vendor-neutral.

Olivares AI read/write access map: AI agents linked to the resources they reach, with one unauthorized write flagged in orange.
29
wired modules · one self-hosted release
100%
self-hosted — governance data stays under your control
0
calls home · runs air-gapped
R / RW
per-resource access · permitted vs observed

Discover · 01 / 05

Every agent in your estate, discovered passively

No proxy, no agents to babysit. Olivares watches your infrastructure and inventories every agent, session, model and MCP — with the surfaces each one reads and writes.

olivares · inventory prod Preview
Inventory All agentsDrift group by · host 214 agents · 42 hosts / filter…
Agent Type Model Host Sessions Surfaces Spend · 30d Last seen
claude-deploy-bot autonomous claude-opus-4-8 cloud-a / eu-west 6 R 1 W 1 $1,860 24s ago
support-rag-agent retrieval gpt-5.5 cloud-b / us-east 9 R 2 W 0 $980 1m ago
billing-reconciler batch job claude-sonnet-4-6 cloud-a / eu-central 3 R 1 W 1 $720 4m ago
infra-copilot assistant claude-opus-4-8 on-prem / rack-3 8 R 1 W 1 $880 38s ago
data-export-job batch job magistral-small on-prem / rack-3 4 R 3 W 1 $1,240 2m ago
qa-runner evaluation gpt-5.4-mini cloud-c / edge 7 R 1 W 0 $180 12m ago
+208 more agents $2,540

data-export-job holds an unreviewed write to prod-postgres — least-privilege drift, surfaced the moment it appears.

Govern · 02 / 05

One rule, before and after

Write policy as code and watch it land on the map. The unreviewed write to your production database becomes a denied, least-privilege path.

olivares · policy prod Preview
policy · prod-db-writes
01 policy "data-export-readonly" { 02 agent = "data-export-job" 03 resource = "prod-postgres" 04 allow = ["read"] 05 deny = ["write"] 06 on_violation = "block + alert" 07 }

Pin the export job to read-only on the production database; block writes.

enforcement ● enforcing ● unreviewed

evt ev-001 · denyunreviewed write · data-export-job → prod-postgres · 2m ago

Cost · 03 / 05

Spend, attributed — not estimated

Every dollar tied to the agent, model and team that caused it — with budgets and trends your finance team can act on, not guess at.

olivares · cost prod Preview
Spend by agent last 30 days
Agent Model 30d Trend % total
claude-deploy-bot claude-opus-4-8 $1,860 22.1%
data-export-job magistral-small $1,240 14.8%
support-rag-agent gpt-5.5 $980 11.7%
infra-copilot claude-opus-4-8 $880 10.5%
billing-reconciler claude-sonnet-4-6 $720 8.6%
qa-runner gpt-5.4-mini $180 2.1%
+208 more agents $2,540 30%

Audit · 04 / 05

An append-only record of who touched what

Every access in a tamper-evident, hash-chained ledger — filter it, replay it, and export it as evidence your auditors accept.

Export evidence
PDF CSV JSON

8 events · 2 flagged · 30-day window
signed · hash-chained · append-only

olivares · audit ledger prod Preview
writes only denied only last 24h
  1. 2m ago data-export-job WRITE prod-postgres flagged ev-001
  2. 3m ago data-export-job READ s3://billing-exports allowed ev-002
  3. 5m ago claude-deploy-bot WRITE k8s-prod allowed ev-003
  4. 6m ago billing-reconciler WRITE stripe-api flagged ev-004
  5. 9m ago support-rag-agent READ internal-wiki-mcp allowed ev-005
  6. 11m ago infra-copilot READ vault-secrets blocked ev-006
  7. 14m ago data-export-job READ k8s-prod allowed ev-007
  8. 18m ago qa-runner READ internal-wiki-mcp allowed ev-008

Security & Compliance · 05 / 05

Verifiable controls, mappable frameworks

mTLS, an append-only ledger and policy enforced at access time — mapped to the frameworks your auditors ask about.

mTLS between components

Mutual TLS on every internal hop; no plaintext control traffic.

● enforced

Append-only ledger

Every view and change hash-chained and tamper-evident.

● active

Guardrails

Policy enforced at access time — blocked, not just logged.

● enforced

Least-privilege collector

Passive discovery from a minimally-privileged, read-only collector.

● active
olivares · compliance matrix prod Preview
Framework coverage mapped partial in progress
Framework Access controlAudit trailRisk mgmtData governance Coverage
EU AI Act mapped mapped mapped mapped 96.9%
NIST AI RMF mapped mapped mapped partial 98.6%
ISO 42001 mapped mapped in progress mapped 97.4%
SOC 2 mapped mapped partial mapped 98.4%
coverage 98% Olivares maps your controls to each framework; coverage shown is self-assessed and illustrative — not a certification. It gives you the evidence to support your certification path.

How it works

Running in your own infrastructure

  1. 01

    Deploy

    A single container or binary on your own infrastructure. No account, no cloud dependency, no calls home.

  2. 02

    Discover

    Olivares AI passively finds every agent, session, MCP and model already running — no mandatory proxy.

  3. 03

    Map

    It builds the access graph: what each agent can reach and what it actually touches, read versus read/write.

  4. 04

    Govern

    Set policy, watch for drift and export audit evidence. Visibility becomes control as your estate grows.

vendor-neutral · runs across Claude OpenAI Gemini Llama Ollama / vLLM Postgres S3 Vault Kafka Kubernetes AWS / Cloudflare

Open source

Your infrastructure. Your data. Your ground truth.

Olivares AI is open-core under AGPL-3.0. The complete product publishes to the public repository with the first release — to run on your own infrastructure, inspect every line, and keep your data where it belongs. A commercial license and a dedicated enterprise tier are available when your organization needs them.

  • AGPL-3.0

    The complete product, self-hosted, free — no feature gates on the core.

  • Vendor-neutral

    Not tied to any single AI vendor, identity provider or cloud.

  • Air-gapped friendly

    Olivares makes no mandatory calls home and runs in isolated, regulated networks.

See what your agents can reach

Deploy Olivares AI on your own infrastructure and get the access map your platform and security teams have been asking for.