GIRD for Mac · Argus

Your team's Macs are running AI agents. Now you can see and control every one.

Engineers across your company run AI coding assistants on their Macs. Argus gives security the visibility, control, and proof to let AI in safely, with nothing for developers to change.

Deploys through the tools you already run: Jamf Microsoft Intune Kandji Workspace ONE
The risk

AI assistants already have the keys. Most companies just can't see it.

An AI coding assistant on a developer's Mac can read anything that developer can: repositories, cloud keys, customer records. A single poisoned file, web page, or ticket can turn that helpful assistant into a way for credentials and data to leave your company.

Invisible

No inventory, no owner.

AI assistants get installed laptop by laptop. Security can't tell what's running or what it can reach.

Over-trusted

One poisoned file away from a leak.

A planted instruction can turn a trusted assistant against you, quietly reading credentials and sending data out.

Unaccountable

"The developer did it" isn't an answer.

When something goes wrong, normal logs blame the person, not the agent. You can't show whether the person or the agent did it.

Not hypothetical

Public incidents, sourced.

Private code and secrets shipped to outside servers. Production databases wiped in seconds. Supply-chain worms that turn an installed assistant into the thing hunting for your keys. We pulled the most significant public incidents into one sourced dossier.

Claude Code · database wiped Cursor · 9-second wipe + remote code execution Copilot · zero-click code leak Supply chain · credential worms
See the incident dossier
What security gets

Let your team use AI. Keep the control.

On a managed fleet, Argus reports to one console, so security can answer "what are our AI agents doing, and is it safe?"

See every AI agent

A live inventory of the AI assistants on each Mac, known and unknown, each tied to a real person and team.

Protect credentials & secrets

Flag or block AI agents reaching for cloud keys, tokens and sensitive files, even when a planted instruction tells them to.

Catch sensitive data

Flags customer records, secrets and regulated data before an agent sends them off the Mac.

Proof you can defend

A tamper-proof record of what every AI agent did, tied to a person, built for incident response, audits, and compliance.

Works with the assistants your teams use

Recognizes Claude Code, Cursor, OpenAI Codex, Gemini CLI and more. No per-tool setup.

One console for your Mac fleet

Every AI agent, every Mac, one screen.

Argus · Mac fleet ● 312 Macs · 1 agent to review
AI agentMac · ownerReaching forStatus
coding assistantMBP-4471 · P. Nair, Platformrepository · approvedAllowed
coding assistantMBP-2210 · J. Lee, Datacloud credentials fileBlocked
coding assistantMBP-2210 · J. Lee, Datacustomer records → externalRedacted
new AI toolMBP-0098 · R. Sharma, Engfirst seen 2m agoReview

Illustrative example.

Rollout

Rolls out like any managed Mac app.

No agent-by-agent setup. No tickets.

1

Push it through your MDM

Deploy Argus to every Mac through Jamf, Microsoft Intune, Kandji, or Workspace ONE, the same way you ship any managed app.

2

Agents are recognized as they launch

Argus recognizes AI assistants as they launch. No manual inventory to build or keep current.

3

Set policy from one console

From one console, set what AI agents can and can't do, and watch it enforced on every Mac, with a record of everything.

Argus runs in the background. Agents keep working. Only the actions your policy blocks are stopped.
Plans

Free on one Mac. A contract for your fleet.

Argus is free to download and use. Team and Enterprise rollouts are agreed in a signed contract. Book a demo to scope yours.

Free
For a single developer who wants their AI assistant kept in check.
  • Credential & secret protection
  • Activity on your own Mac
Download for Mac
Team
For security teams rolling AI out across engineering, safely.
  • Everything in Free
  • Fleet-wide console & central policy
  • Sensitive-data protection & audit record
  • MDM rollout & owner attribution
Book a fleet demo
Enterprise
For regulated and large organizations governing AI end to end.
  • Everything in Team
  • Identity-provider sync (Okta, Entra, Google)
  • One control plane across Mac, servers and cloud
  • Compliance support & procurement
Talk to sales
Part of the platform

Argus is how GIRD protects your Macs.

Argus puts every Mac in your company under one GIRD control plane, so security governs every AI agent on every Mac under one policy. It's the Mac piece of the broader platform, which brings the same control to your servers and cloud today, with the browser on the roadmap.

Trust

What we collect, and where we stand.

What Argus sends us

What Argus sends to GIRD, and how long we keep it, is listed in our privacy notice.

Certifications

Not SOC 2 certified yet. How we handle security reviews.

Book a demo

Book a demo for your fleet.

Tell us about your Mac fleet and the AI agents your team runs. Requesting a demo creates no obligation. Pilots run under their own contract.

Book a demo