---
title: "JetStream Announces Clearance, a Reasoning Engine That Authorizes Every AI Agent Action"
id: "3513"
type: "insight"
slug: "jetstream-clearance-zero-trust-ai-actions"
published_at: "2026-09-02T17:16:08+00:00"
modified_at: "2026-09-02T19:13:04+00:00"
url: "https://jetstream.security/insights/jetstream-clearance-zero-trust-ai-actions/"
markdown_url: "https://jetstream.security/insights/jetstream-clearance-zero-trust-ai-actions.md"
excerpt: "Clearance moves the Zero Trust boundary from the application to the individual action, deciding whether an agent's next step should run before it executes."
taxonomy_insight_category:
  - "Press Release"
taxonomy_insight_type:
  - "Press Release"
taxonomy_insight_tags:
  - "Agentic AI"
  - "Agentic Identity"
  - "AI Gateway"
  - "AI Governance"
  - "Clearance"
  - "JetStream AI Blueprints"
  - "MCP"
  - "Runtime Governance"
  - "Zero Trust"
---

Press Release

# JetStream Announces Clearance, a Reasoning Engine That Authorizes Every AI Agent Action

Clearance moves the Zero Trust boundary from the application to the individual action, deciding whether an agent's next step should run before it executes.

[Agentic AI](https://jetstream.security/insights/insight_tags/agentic-ai/)
[Agentic Identity](https://jetstream.security/insights/insight_tags/agentic-identity/)
[AI Gateway](https://jetstream.security/insights/insight_tags/ai-gateway/)
[AI Governance](https://jetstream.security/insights/insight_tags/ai-governance/)
[Clearance](https://jetstream.security/insights/insight_tags/clearance/)
[JetStream AI Blueprints](https://jetstream.security/insights/insight_tags/jetstream-ai-blueprints/)
[MCP](https://jetstream.security/insights/insight_tags/mcp/)
[Runtime Governance](https://jetstream.security/insights/insight_tags/runtime-governance/)
[Zero Trust](https://jetstream.security/insights/insight_tags/zero-trust/)

JetStream Security

Press Release

JetStream Security, the AI Control Plane for enterprise AI, today announced JetStream Clearance™, a reasoning engine that evaluates every AI agent action against an approved design and decides whether it should run before it executes.

Clearance examines every request at the JetStream AI Gateway, maps it to the agent or user making the request, the approved design which authorizes the request, the tools being invoked, and what that specific call is about to do. Clearance, as the name suggests, is required for the request to be processed by the AI Gateway. Bad or dangerous sequences of requests will be denied clearance, preventing rogue agents and runaway AI systems from performing unauthorized actions. Clearance performs its reasoning in flight, ahead of execution, rather than in a log afterward.

The announcement comes as [AI gateways become a commodity infrastructure](https://jetstream.security/insights/ai-security-control-plane-beyond-gateway/)
. Rippling, Ramp, Databricks, Microsoft, and IBM have each shipped one in the past three months, joining LiteLLM, Portkey, Kong, and JetStream. Anthropic documents the gateway as the recommended control point for enterprise Claude Code deployments. Gateways route traffic, cache responses, proxy MCP calls, and enforce rate limits.

None of that work determines whether an agent action should happen in the first place.

Enterprises that have tens of thousands of employees today are preparing to run hundreds of thousands of AI agents, each acting under an identity the company issued. Historically, Zero Trust settled whether a person or an application should reach a resource. It assumed a human on the other end, moving at human speed, with the application as the unit of trust. Today, agents break all three assumptions. To be effective, the trust boundary must move to the individual action, evaluated in the moment rather than reconstructed afterward.

JetStream Clearance applies that principle where agents act, at the tool calls an agent makes through the Model Context Protocol. That is where the risk is concentrated today.

Detection and authorization are different jobs. Runtime security platforms see what an agent did and respond at machine speed. JetStream’s Clearance decides whether the action runs at all. The two layers are designed to operate together.

“Every enterprise I talk to has an AI gateway now, and that is exactly the problem,” said Raj Rajamani, Co-Founder and CEO of JetStream Security. “A gateway can tell you where a request went. The question our customers keep asking is whether the agent should have sent it at all, and until now nothing in their stack could answer that. Clearance is how we deliver Zero Trust for AI. It’s every action authorized, every time.”

JetStream is demonstrating Clearance at Fal.Con in Las Vegas this week, and was named in CrowdStrike’s new [AI Partner Specialization](https://www.crowdstrike.com/en-us/press-releases/crowdstrike-launches-ai-partner-specialization-for-the-agentic-era/)
, which launched at during the CrowdStrike conference.

Clearance is based on JetStream AI Blueprints™, the versioned operational contracts that describe how each agentic system is assembled, including which models, MCP servers, tools, datasets, and identities it uses. Policy binds to the identity when access is requested and reaches inside the tool and down to the individual parameter. A team can enable a server’s read tool and block its delete tool, so an agent never holds a permission it was never meant to have.

The distinction matters most in sequence. For example, an agent authorized to query a customer record, prepare an attachment, and send email may take each of those steps legitimately. Adding an external blind carbon copy (bcc) to the final send is a step that has high correlation to data exfiltration. Clearance evaluates the sequence rather than the isolated call and stops the send.

“The industry spent a decade learning that a firewall that only reads ports is not a security control,” said Venu Vissamsetty, Co-Founder and Chief Architect of JetStream Security. “We are at that same moment with AI. Enterprises are deploying agents faster than they can describe what those agents are permitted to do, and most are finding the gap the hard way. This is the control our customers have been asking us for.”

JetStream Clearance™ enters general availability this fall.

## **About JetStream Security**

JetStream Security is the AI Control Plane for enterprise AI. The platform makes every AI agent, model, workflow, and identity in an enterprise visible, attributed, and governed, continuously and at runtime, across the entire AI estate. JetStream is backed by [Redpoint Ventures and the CrowdStrike Falcon Fund](https://jetstream.security/insights/jetstream-raises-34-million-investment-redpoint-crowdstrike-ai-security-governance/)
.

## Stay ahead with our newsletter

Stay informed on industry trends, expert analysis, and product updates.

#### Explore more insights

[See all Insights](/insights)

[https://jetstream.security/insights/jetstream-nvidia-inception/](https://jetstream.security/insights/jetstream-nvidia-inception/)
Jul 27, 2026

###### NVIDIA Adds JetStream to Its Inception AI Partner Ecosystem

JetStream joins NVIDIA's startup ecosystem, adding technical and go-to-market resources as it helps enterprises govern AI agents.

[https://jetstream.security/insights/jetstream-nvidia-inception/](https://jetstream.security/insights/jetstream-nvidia-inception/)

[https://jetstream.security/insights/jetstream-ai-kill-switch-agents/](https://jetstream.security/insights/jetstream-ai-kill-switch-agents/)
Jul 27, 2026

###### JetStream Releases 'AI Kill Switch' to Shut Down Individual Agents

JetStream's new control halts a single compromised agent in seconds, leaving the rest of the AI estate running.

[https://jetstream.security/insights/jetstream-ai-kill-switch-agents/](https://jetstream.security/insights/jetstream-ai-kill-switch-agents/)

[https://jetstream.security/insights/jetstream-security-fedramp-high-certification/](https://jetstream.security/insights/jetstream-security-fedramp-high-certification/)
Jul 22, 2026

###### JetStream Security Achieves FedRAMP Class D (High) Certification Through Second Front

JetStream SAIG Platform™, the security-first AI governance control plane, is now certified at FedRAMP Class D (High), giving federal agencies and private compa…

[https://jetstream.security/insights/jetstream-security-fedramp-high-certification/](https://jetstream.security/insights/jetstream-security-fedramp-high-certification/)

## Top Articles

01

Press Release

### [JetStream Security Achieves FedRAMP Class D (High) Certification Through Second Front](https://jetstream.security/insights/jetstream-security-fedramp-high-certification/)

July 22, 2026

02

Press Release

### [JetStream Announces Verified MCP Governance Layer for Enterprise AI Agents](https://jetstream.security/insights/jetstream-verified-mcp-governance-layer-for-enterprise-ai-agents/)

July 13, 2026

03

Press Release

### [JetStream Releases ‘AI Kill Switch’ to Shut Down Individual Agents](https://jetstream.security/insights/jetstream-ai-kill-switch-agents/)

July 27, 2026

## Featured Experts

[https://jetstream.security/author-bio/patrick-zeller/](https://jetstream.security/author-bio/patrick-zeller/)

### [Patrick E. Zeller](https://jetstream.security/author-bio/patrick-zeller/)

General Counsel, Legal and Compliance

Patrick has spent over twenty years advising Fortune 100 companies on privacy, cybersecurity, and data protection — including...

[https://jetstream.security/author-bio/keith-weisman/](https://jetstream.security/author-bio/keith-weisman/)

### [Keith Weisman](https://jetstream.security/author-bio/keith-weisman/)

Head of Forward Deployed Engineering

Keith brings thirty years of hands-on cybersecurity and services leadership, beginning with enterprise security consulting at Accenture and...

[https://jetstream.security/author-bio/tommy-hui/](https://jetstream.security/author-bio/tommy-hui/)

### [Tommy Hui](https://jetstream.security/author-bio/tommy-hui/)

Head of Sales Engineering

Tommy Hui has spent more than a decade leading sales engineering at security companies, including six years at...
