At a glance
Aegis
Every unmanaged AI account is another place your source code, customer data, and company knowledge can leave your control.
Hatchery built Aegis first because its own engineers could not safely place source code, product plans, customer context, and company knowledge into unmanaged AI accounts.
Aegis gives organizations one place to manage who can use AI, which models are approved, what policy applies, and how access is revoked.
Approved model access runs through a governed AWS architecture designed for enterprise identity, policy, visibility, and multi-AZ operation.
Aegis does not store or log prompts, responses, or tool output. Administrators retain identity, model, token, spend, and policy-event visibility without building a transcript warehouse.
Problem
Your employees are already using AI. Do you know where company data is going?
At enterprise scale, personal accounts, copied keys, public model interfaces, and tool-specific settings become an unmanaged access network. Security teams cannot reliably answer who is using which model, what data boundary applies, how access is revoked, or whether sensitive work is leaving approved systems.
Risk
A single prompt can carry the value of the business outside it.
Source code, trade secrets, designs, customer information, contracts, strategy, and operating context can all appear in a prompt. One careless paste or unmanaged credential can create legal, security, ownership, and regulatory exposure before leadership knows it happened.
Hatchery role
Give people a safer path that is easier than going around it.
Aegis sits between familiar AI tools and approved models accessed through AWS. It binds every request to organizational identity, applies policy, controls model access, meters usage, and supports rapid revocation. Hatchery is working directly with the Amazon Bedrock team to turn that architecture into a production service people will actually use.