Enclave is a hardened sandbox where analysts, red teams, and engineers work alongside Claude on real, sensitive systems — inside per-user isolation, with every action scoped to their role, clearance, and license.
The problem
The people who'd benefit most from AI — the ones handling breaches, exploits, and regulated data — are the ones who legally and practically can't use public tools.
Sensitive artifacts leave your perimeter. No isolation, no clearance model, no audit trail your auditors will accept.
Air-gapped and safe, but the analyst is on their own. Zero AI leverage on the hardest, most time-critical work.
AI leverage and containment. Each session runs isolated, scoped to the operator's role and clearance, fully logged.
The platform
Everything a security team needs to actually adopt AI: identity, isolation, and a familiar Claude-native workflow.
Every workspace spins up in its own disposable micro-VM. Tools, files, and network live and die with the session.
Profiles carry job, team, certifications and clearance. The AI tailors what it surfaces — and the platform enforces what's allowed.
Auto-attaches to your Claude CLI or API keys. Your model access, your billing, inside our sandbox.
Deny-all by default. Allowlist targets per workspace. Nothing — not a sample, not a secret — leaves without policy.
Every prompt, tool call, and file touch is hashed and logged. Export for SOC 2, ISO 27001, or an incident review.
Ship vetted security tooling into the sandbox. Operators get power; you keep the supply chain under control.
Security model
Real security doesn't live in a web page — it lives in isolation, policy, and enforcement that the AI can't talk its way past. Enclave is built in layers, and authorization is enforced below the model, never by it.
How it works
Operator signs in via your SSO. Their role, team, certifications and clearance load from a signed identity — no self-declared access.
A disposable sandbox provisions with egress locked down and the curated toolset for their role. Claude CLI auto-attaches.
They collaborate with Claude on real artifacts. Every step is scoped to policy and written to an immutable trail. Tear down when done.
Pricing
Plans map to what the platform actually enforces — isolation strength, identity, and compliance. Prices are indicative.
Early access
Enclave is in private preview for security teams. Try the live console demo, or request an early-access briefing.