Press release
Salt Security Introduces the Industry's Largest Policy Library for Agentic AI Governance
Industry-first milestone includes more than a dozen policies purpose-built for AI agent security, covering MCP server configuration, agent authorization, and agentic-specific threat patterns across the enterprise.PALO ALTO, Calif., July 20, 2026 - Salt Security, the leader in API and Agentic Security, today announced that the Salt Policy Hub has reached 100 pre-built policies, creating what is effectively the industry's first app store for agentic security governance. As enterprises race to deploy AI agents across their organizations, the Policy Hub provides security teams with an immediately deployable library of governance policies spanning APIs, MCP servers, agent permissions, authentication, compliance and runtime behavior.
The milestone comes at a critical moment. Every AI agent depends on APIs to access data, invoke tools and take actions across enterprise systems. The infrastructure organizations have spent years securing for APIs has become the execution layer for agentic AI. As a result, API governance has become synonymous with agent governance, creating a need for security policies that extend across the entire agentic ecosystem rather than protecting individual components in isolation.
Rather than forcing organizations to build that governance framework from scratch, the Salt Policy Hub provides a library of enterprise-ready policies that can be activated immediately and customized to suit each organization's environment. Much like an app store provides trusted applications, the Policy Hub gives security teams access to proven governance policies covering the technologies that power modern AI agents, helping organizations adopt autonomous AI with confidence while maintaining security and compliance.
By the Numbers
● 100 pre-built policies covering data security, access control, OAuth, API architecture, MCP configuration, third-party risk and agentic security
● 61 policies activate automatically out of the box, providing immediate protection without configuration
● 12+ policies purpose-built for AI and agentic security, covering MCP server configuration, agent authorization and autonomous agent behavior
● Eight compliance frameworks mapped across the Policy Hub, including PCI DSS, FedRAMP, SOC 2, GDPR, HIPAA, ISO 27001, CMMC and HITECH
● Unlimited custom policies allowing organizations to extend governance with their own requirements
● Single-click activation for the remaining policies with no complex configuration required
The Policy Hub is a component of the Salt Agentic Security Platform, which gives enterprises full visibility and governance across the Agentic Security Graph: the connected layers of LLMs, MCP servers, APIs, and integrated enterprise systems through which AI agents take action. The 100-policy milestone extends that governance framework from runtime protection into proactive posture management across the full agentic stack.
"When we launched the Policy Hub in 2024, the most common thing we heard from CISOs was: we know we need posture governance, but we have no idea where to start. That question was killing governance programs before they launched. 100 policies means that question now has a concrete answer. Security teams can walk in on day one with meaningful protection already active, and extend it from there without limit." - Michael Callahan, VP of Strategy and CMO, Salt Security
Built for the Agentic Era
AI agents do not operate in isolation. They rely on APIs, MCP servers, identity systems and enterprise applications to gather information and perform actions. Securing AI therefore requires more than protecting models or prompts. It requires governing everything an agent can access and everything it is authorized to do.
Many of the policies within the Policy Hub were originally developed for API posture governance because APIs remain the foundation of every agentic workflow. As organizations adopt AI agents, those same controls naturally become part of a broader governance framework for the entire agentic ecosystem. Salt has continued to expand the Policy Hub alongside the rapid growth of agentic AI, adding policies that address MCP server misconfigurations, over-privileged agents, unauthorized agent actions and other emerging risks unique to autonomous systems.
When Salt Security introduced MCP server discovery in September 2025, identifying and classifying MCP servers across enterprise environments, corresponding governance policies were developed in parallel. The Policy Hub continues to expand alongside the technologies that underpin agentic AI, ensuring organizations can govern new capabilities as quickly as they adopt them.
Salt Code, launched in June 2026, extends the same Posture Governance Engine into the software development lifecycle, applying governance policies to AI-generated code as it is created. This provides organizations with a consistent policy model spanning AI-generated software, APIs, agents and runtime behavior across the entire application lifecycle.
"The board question CISOs are being asked right now is not whether we have AI governance. It is whether we can prove it. 100 policies in active deployment is a concrete, operational answer to that question. Not a roadmap. Not a strategy. An active governance layer running today." - Aner Gelman, VP of Products, Salt Security
Availability
The Salt Policy Hub is available to all Salt Security customers as part of the Salt Agentic Security Platform. All 100 pre-built policies are available today. Custom policy creation is available without limit. Organizations interested in evaluating the Salt Agentic Security Platform can request a demo at salt.security.
9 Mount Joy Drive, Tewksbury, MA. 01876
Salt Security is the leading API and Agentic Security company, protecting the world's most innovative enterprises from API and AI agent attacks. The Salt Security Agentic Security Platform secures the full agentic ecosystem, discovering all APIs, agents, and MCP connections, stopping attacks in real time, and eliminating vulnerabilities before they reach production. Salt Security was founded in 2016 and is backed by Sequoia Capital, S Capital, Tenaya Capital, Salesforce Ventures, Advent International, and other leading investors. For more information, visit www.saltsecurity.com.
This release was published on openPR.
Permanent link to this press release:
Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.
You can edit or delete your press release Salt Security Introduces the Industry's Largest Policy Library for Agentic AI Governance here
News-ID: 4581951 • Views: …
More Releases from Salt Security
Salt Security launches Salt Code, the first agentic security solution to enforce …
The first solution that enforces security policy inside every AI coding assistant your developers use. Claude, Cursor, GitHub Copilot, Windsurf, Codex and Gemini CLI now generate policy-compliant code by default, from prompt to production.
PALO ALTO, Calif., June 1, 2026 - Salt Security, the leader in API and Agentic Security, today announced the launch of Salt Code, a new component of its Agentic Security Platform that enforces security policies across…
More Releases for API
API Design Tools Market Trends: Powering the Future of Intelligent API Developme …
The global API Design Tools Market is witnessing remarkable growth as organizations increasingly embrace API-first development strategies to support digital transformation, cloud-native applications, and interconnected software ecosystems. APIs have become the backbone of modern enterprise architecture, enabling seamless communication between applications, services, and platforms while improving operational efficiency and customer experiences. As enterprises accelerate digital initiatives, the demand for advanced API design tools that simplify collaboration, governance, testing, and documentation…
API Management Market Size, Trends Analysis 2032 by Key Vendors- Google, Cloud A …
USA, New Jersey: According to Verified Market Research analysis, the global API Management Market size was valued at USD 4.37 Billion in 2024 and is projected to reach USD 33.07 Billion by 2032, growing at a CAGR of 28.77% from 2026 to 2032.
What is the current outlook of the API Management Market and its expected growth potential?
The API Management Market is witnessing robust expansion due to the growing need…
Vehicle API Market 2023 | Futuristic Technology- CarAPI, Caruso, One Auto API, A …
The Vehicle API market research report delivers accurate data and innovative corporate analysis, helping organizations of all sizes make appropriate decisions. The Vehicle API report also incorporates the current and future global market outlook in the emerging and developed markets. Moreover, the report also investigates regions/countries expected to witness the fastest growth rates during the forecast period.
The Vehicle API research report also provides insights of different regions that are…
Face Recognition API Market Growth, Business Overview 2023, and Forecast to 2030 …
Facial recognition is a way of recognizing a human face through technology. A facial detection system uses biometrics to map facial features from a photograph or video. It compares information with a database of known faces to find a match. Moreover, the accuracy of facial recognition systems has improved way better in the last decade. Recent market developments and competitive strategies such as expansion, product launch, and development, partnership, merger,…
API Management Market Report 2018: Segmentation by Solution (API Portal, API Gat …
Global API Management market research report provides company profile for Akana, Inc. (U.S.), Apiary, Inc. (U.S.), Axway, Inc. (France), CA Technologies, Inc. (U.S.), Cloud Elements, Inc. (U.S.), Dell Boomi, Inc. (U.S.), DigitalML (U.S.), Fiorano Software, Inc. (U.S.), Google, Inc. (U.S.), Hewlett-Packard Enterprises Co. (U.S.), IBM Corporation (U.S.), Mashape Inc. (U.S.) and Others.
This market study includes data about consumer perspective, comprehensive analysis, statistics, market share, company performances (Stocks), historical…
Telecom API Market: OTT Service Providers Continue Cutting into Telecom API Prof …
The highly fragmented market of telecom API holds a staggering number of service providers and aggregators that are already offering their APIs to various telecom carriers. Alcatel Lucent, Apigee Corp., and Fortumo OU were the leading providers of telecom API from a global perspective in 2014. Telecom carriers have partnered with them and other prominent players in the past to launch APIs in the market.
According to Transparency Market Research’s latest…