When an AI agent decides to exfiltrate a customer database or execute a risky API call, the security team needs to know before the action completes. This is the runtime problem Capsule Security is trying to solve, and a group of cybersecurity-focused investors just wrote a $7 million check to back the attempt [The SaaS News, April 2026]. The Tel Aviv-based startup is building a platform that monitors, detects, and blocks rogue AI agent behavior in real time [Business Wire, April 2026].
The runtime wedge
Capsule’s bet is that traditional security guardrails are insufficient for autonomous AI agents. Its platform is designed to sit in-path, continuously monitoring agent reasoning, tool calls, and action execution [Capsule Security, 2026]. The goal is to detect anomalies like prompt injection or data exfiltration and intervene to block unsafe actions before they are finalized, without requiring changes to the underlying agent code [Capsule Security, 2026].
Founders with a security-first pedigree
| Founder | Role | Key Prior Experience |
|---|---|---|
| Naor Paz | Co-founder & CEO | F5 (WAF product lead), Unit 8200, Israeli Prime Minister’s Office [Talking Serverless podcast, 2026] |
| Lidan Hazout | Co-founder & CTO | SecuredTouch (VP R&D), Transmit Security (VP R&D), Ping Identity [Ynet News, 2026] [ZoomInfo, 2026] |
The pre-traction risk
Despite the founder narrative and seed funding, Capsule is operating in a pre-revenue, pre-customer disclosure phase. No named enterprise deployments, customer logos, or significant partnerships have been announced. The competitive field is taking shape, with early movers like Prompt Security and Zenity already establishing positions in the broader AI security and governance space.