Keycard, which lets enterprises manage AI agent access to internal systems, raised a $30M Series A led by Acrew Capital and a $8M seed led by a16z and boldstart
Maria Deutscher / SiliconANGLE :
Context & Ripple Effects
Enterprise AI security coverage has expanded from monitoring unauthorized employee use of internal data to governing autonomous actors. Cyberhaven's funding for internal-data monitoring marked the human-use side of that problem, while NeuralTrust's agent discovery, monitoring and governance platform addresses the agent side.
Keycard sits at the access-control layer: as agents connect to internal systems, enterprises need a way to determine and manage what those agents can reach. The financing gives that category another well-backed specialist alongside platforms such as Adapter's data-control infrastructure for agents and apps.
First-order effects
- Keycard gains $30M in Series A capital, following its $8M seed, to build out its enterprise platform for managing AI-agent access to internal systems.
- Enterprise buyers evaluating agent deployments gain another specialist vendor focused specifically on permissions and access to internal resources.
Second-order effects
- AI-agent governance vendors will face pressure to show how access controls connect with adjacent functions such as monitoring, data control and workspace security, rather than operating as isolated policy tools.
- Security teams may increasingly assess agent rollouts through access-management requirements, making integration with internal systems a more consequential buying criterion.
Third-order effects
- If enterprises move more work into agent-driven workflows, identity, authorization and audit controls could become a distinct infrastructure layer for AI deployment, not merely features inside individual applications.
- The category's boundaries remain unsettled: access-control specialists may coexist with broader agent-governance platforms or be absorbed into larger security and data-control stacks.
The trend: Enterprise AI adoption is creating a new security-control market centered on governing what autonomous agents may access and do inside company systems.