Skip to main content

Works with your stack

Plug-and-play adapters. Your data stays in your environment.

Salesforce

Accounts · Billing · Custom objects

Status verified below from the staging environment (not assumed).

ServiceNow

Changes · Incidents · Approvals

Status verified below from the staging environment (not assumed).

Databricks

Unity Catalog · Data access

Status verified below from the staging environment (not assumed).

Snowflake

Data policies · Classification

Status verified below from the staging environment (not assumed).

SAP

Authorizations · Business rules

Status verified below from the staging environment (not assumed).

Okta / IAM

Identity · Roles · Least privilege

Status verified below from the staging environment (not assumed).

REST APIs

Any system over HTTP

Status verified below from the staging environment (not assumed).

MCP

Agent tool calls

Status verified below from the staging environment (not assumed).

Live connector status

Loaded from /staging/api.php?action=connectors with probe. LIVE only when the connector path supports it. No silent LIVE → SIM fallback.

Developer example

Actual SDK pattern from @tekcapitol/tc-protect-sdk (simplified).

const tekcapitol = createClient({ apiKey, apiUrl });
const decision = await tekcapitol.checkWrite({
  // write intent fields + trusted evidence
});
// decision.decision === 'allow' | 'pause' | 'block'
if (decision.decision !== 'allow') {
  // do not execute the write
}

Write intent → Check Write → ALLOW / PAUSE / BLOCK

Configure once

Adapters and evidence contracts stay in your environment.

Use existing governance

Complement Salesforce, ServiceNow, Databricks, and IAM.

Deploy in your VPC

Production stays where your data already lives.

Add / discuss an integration →