Capsule Security emerged from stealth with $7 million in seed funding to address security risks associated with AI agents operating inside enterprise environments. The round was led by Lama Partners, with participation from Forgepoint Capital International. The company is focused on building a runtime security layer that monitors and controls AI agent behavior in real time.
Capsule’s platform is designed to secure what it describes as a new class of “privileged users” in the enterprise, AI agents that operate at machine speed with direct access to critical systems. The solution provides visibility into agent actions and enforces guardrails during execution, preventing malicious behavior, unintended actions, and data exfiltration.
Unlike traditional security tools, Capsule operates within the execution layer of AI workflows, addressing what the company calls the “runtime gap” between prompts and actions. The platform evaluates agent behavior in context and can block unsafe operations before they are completed, while also generating auditable telemetry for governance and compliance.
The company has also identified vulnerabilities in major AI platforms, including prompt injection risks, highlighting the growing need for runtime protection as enterprises adopt agent-based systems at scale. Capsule’s technology integrates with existing tools without requiring proxies, gateways, or additional infrastructure.
Capsule supports a range of agent platforms, including Cursor, Claude Code, Microsoft Copilot Studio, ServiceNow, and Salesforce Agentforce, enabling organizations to secure both third-party and custom AI deployments.
The company was recently named a finalist in a startup accelerator led by CrowdStrike, Amazon Web Services, and NVIDIA, reflecting early recognition of its approach within the cybersecurity ecosystem.
Capsule Security was founded in 2025 by Naor Paz and Lidan Hazout and is headquartered in Tel Aviv.
KEY QUOTES:
“AI agents are a new class of privileged user, operating at machine speed with minimal oversight. Legacy tools weren’t built to monitor what happens between prompt and action—that’s the runtime gap. Capsule closes it.”
Chris Krebs, Former Director, CISA
“AI agents are quickly becoming a new class of privileged user in the enterprise, except they can act at machine speed and they do not behave like deterministic software. That creates a dangerous gap between what security teams can govern today and what agents can do in production. Capsule closes that gap by enforcing trust at runtime, inside the execution path, so teams can move fast with agents while staying in control of what those agents can access and execute.”
Naor Paz, CEO And Co-Founder, Capsule Security
“The agentic AI boom is creating an opening in runtime behavior enterprises can’t afford to ignore. The ability to secure this layer is what ultimately determines whether companies can move fast with AI without breaking trust. That is why I chose to support Capsule Security. The team is addressing the problem at its core by delivering real-time visibility and control over agent behavior, grounded in the operational reality of AI-driven environments within a fundamentally new and rapidly evolving paradigm.”
Omer Grossman, Advisor, Capsule Security
“Agents have the ‘superpower’ to write and deploy code at unprecedented rates, fundamentally changing how software is built and operated. With that level of power comes a new responsibility to secure it. Security leaders understand that legacy tools were never designed to interpret intent, context, and real-time behavior, which are essential for securing dynamic agentic environments. From day one, Naor and Lidan have combined deep technical rigor with clarity of vision to build a platform that allows organizations to confidently adopt AI agents while stopping dangerous actions before damage is done.”
Ron Zalkind, Founding General Partner, Lama Partners

