The endpoint agent
Scout
Scout is the endpoint agent that captures judgment-level signal at the device. It discovers and observes AI agent activity across your environment, regardless of which platform or framework those agents run on, and gives the Certiv Policy Engine the context it needs to act before an agent does.
Scout is Certiv's endpoint agent. It runs on macOS, Windows, and Linux workstations, discovers AI agents wherever they run, observes what tools they call, and supplies the Certiv Policy Engine with the context needed to block, pause, or steer an agent action before it executes. Scout is what your endpoint team installs; Certiv is what your security and IT organizations buy.
What Scout does
01
Sees every agent, whatever it runs on
Scout discovers and observes AI agent activity across your environment regardless of which platform or framework those agents run on: coding agents, browser agents, MCP servers, internal copilots.
- One consistent view of which agents are running
- What tools they are calling, and how sessions unfold
- Session summaries, so you understand the work without reading raw logs
02
Captures judgment-level signal at the device
An AI agent’s full decision loop is only observable where it runs. Scout sits at the endpoint so the Policy Engine has the context it needs to reason about intent, not just match strings.
- Full context around every agent session
- Enables reasoning-based behavior analysis, not pattern matching
- Findings map to the OWASP Top 10 for Agentic Applications
03
Enforces in the moment
Scout pairs with the Certiv Policy Engine so non-compliant actions are handled before they execute rather than reported afterwards.
- Block, Pause, and Steer interventions operate in real time
- Policy is evaluated at the moment of judgment
- Enforcement is unchanged by who can review a session later
04
Watches agents, not people
Scout observes AI agents and agentic activity, not everything a person does on their workstation. If an AI agent is not involved, Certiv is not looking.
- No browser history monitoring
- No keystroke recording
- No indiscriminate document inspection
Built for simple use and scalable management
You have heard “lightweight” too many times for the word to mean much on its own. Here is what it means operationally.
- Deploys in minutes
- Through the MDM you already run.
- No kernel extensions
- A single reboot is required.
- Light footprint
- Minimal CPU, unnoticeable latency.
- Fails open by default
- Productivity continues uninterrupted.
Agents, not employees
Security teams need visibility into AI agents. Employees need confidence that security tooling is not quietly becoming workplace surveillance. Those requirements should reinforce each other, not compete.
Scout observes AI agents and agentic activity, not everything a person does on their workstation. It does not monitor browser history, record keystrokes, or indiscriminately inspect documents. If an AI agent is not involved, Certiv is not looking.
Read about Privacy Mode
Straight Answers
What Teams Ask About Scout
Expand to view common questions.
What Teams Ask About Scout
Expand to view common questions.
What is Scout?
How is Scout different from Certiv?
Is Scout another endpoint agent to manage?
Which operating systems does Scout support?
Does Scout monitor employees?
See Certiv on Your Own Endpoints
Deploy in minutes. See every agent, then control what happens next.
Keep reading
The Certiv platform
The control plane Scout reports into: policy, enforcement, and the visibility your security and IT organizations buy.
Our approach
Why the endpoint is the only vantage point where an AI agent’s full decision loop is observable.
“I want another agent like I want a hole in the head.”
The objection every endpoint team raises, and the operational reality of running Scout.