Culprit / Alert Intelligence — V0

Alerts in with full PII.
Only tokens ever leave.

Two-way tokenization for alert intelligence. Your sensitive data never lands in logs, notifications, or LLM prompts.

0 PII in logs0 PII in LLMs0 PII in notifications
WEBHOOK/ INGRESSVAULT/ ENCRYPTEDAI/ CORRELATIONINCIDENT/ UI
Fig 01 — Tokenization pipeline

01 / 03 — Tokenization

Built to never see your data.

Payloads are encrypted at our edge and tokenized before they touch any downstream system. Log lines, notifications, and LLM prompts see placeholders only — rehydration is scoped to authenticated users with matching tenant scope.

How tokenization works

Tokenized (Culprit)

alert: auth_failure
host:  <HOST_a3f9>
user:  <USER_c44b>
ip:    <IP_b217>
path:  /api/<ROUTE_d8e>
Pattern preserved. LLM correlates 12 alerts → 1 incident.

02 / 03 — Correlation

AI clusters noise into incidents.

Correlation happens on tokenized events, so the model never sees raw customer names, IP addresses, or ticket contents. You see a single incident with a ranked root-cause summary — not a page of alert notifications.

03 / 03 — Pricing

$49 per service, flat.

No usage caps, no overage, no surprise bills the week an outage doubles your event count. The more data you send, the more value you get — not more cost.

per service · per month

$49

Flat · No overage · No caps

04 — Frequently asked

Questions we answer on every call.

Form 05 — Pilot application

Request pilot access

60 seconds. We review every request.

build 0ebe0a4updated 2026-04-20no trackersno analyticsno third-party scripts