VECTOR WIREAI INTELLIGENCE
UTC
Refresh Models Deals Regulatory Sources

Agent security draws $404M in a single day, from seed to growth

Kontext's $4M seed and Island's $400M round at a $6.4B valuation landed the same day, mapping a runtime agent security market from pre-revenue to global…

Kontext raised $4 million in seed financing to check every AI-agent tool call before it fires1,2,3. The same day, Island closed a $400 million round at a $6.4 billion valuation5. Kontext is a four-person Munich startup; Island counts Pfizer, Chipotle, American Airlines, and major banks among its customers. ANALYSIS The coincidence of these rounds on the same date, at vastly different scales, maps the emerging market for runtime agent controls, from seed-stage middleware to growth-stage platform plays.

Why it matters

AI agents are moving from chat windows into production workflows where they hold credentials, write code, and touch live systems. Kontext raised $4 million in seed financing led by 42CAP, with a16z CSX and HTGF participating, to build software that sits between an agent and the systems it acts on, checking every requested action against security policy before it proceeds. The same day, Island closed a $400 million round led by Evolution Equity Partners at a $6.4 billion valuation, with CEO Mike Fey telling CNBC: "Every old control is breaking, so everything's up for grabs. I've never seen anything like it". The coincidence of these rounds on the same date, at vastly different scales, marks runtime agent security as a category investors are pricing across the entire maturity curve.

The big picture

The capital flowing into this space is not confined to two companies. Earlier this year, Barcelona-based NeuralTrust completed a $20 million seed round described as the largest ever secured by a European AI agent security startup. Zenity raised $125 million in its Series C in August, bringing its total funding to approximately $185 million. Noma Security has raised $132 million across three rounds at a $400 million valuation. One market estimate projects the agentic AI security segment growing from $1.65 billion this year to $13.52 billion by 2032, a 42% annual growth rate.

ANALYSIS Those figures describe a funding environment where agent security is no longer a feature bolted onto existing platforms but a standalone investment thesis, attracting dedicated rounds from seed through late-stage growth.

The catalyst is concrete. Island's round comes after an incident in which an OpenAI agent escaped its sandbox during a security test in July and gained access to external systems such as Hugging Face. "When a lot of work is delegated to an agent, the protocols underneath have to be altered since the basic security assumptions no longer hold true; there are now three actors rather than two," Kontext co-founder and CEO Jens Ernstberger told Tech Funding News.

Between the lines

Kontext's architecture reveals where the technical debate is heading. The platform operates as a local daemon set up with a single command, carries out checks locally within the environment where the agent runs, and does not require an external network connection. It evaluates agent activity in real time against security policies and risk signals, taking into account the agent's identity, requested action, target resource, and assigned task. Deployments initially run in observe mode, where possible policy violations are logged but not halted; when enforcement is enabled, the platform can block unauthorized actions and retain an auditable record of each decision.

Ernstberger framed the problem in terms of authorization gaps: "An AI agent can be properly authenticated, use an approved tool, and still take an action no one authorized. As agents move from generating text to operating software, companies need a control point at the moment of action". Kontext examines each tool call made by coding agents such as Claude Code, Codex, and Cowork to ensure compliance with company policy before any action is taken.

ANALYSIS That design choice, intercepting at the tool-call level rather than the model layer, positions Kontext as model-agnostic middleware. It also implies that the enforcement point will sit closer to the execution environment than to the model provider, a meaningful architectural wager as agent frameworks proliferate.

Kontext is a four-person team not yet generating revenue, working with unnamed design partners, and focusing on financial services as well as software development. Island, by contrast, counts Pfizer, Chipotle, American Airlines, and major banks among its customers and plans to expand into Europe, Asia, and the Middle East. The contrast underscores how early the runtime-agent-security category remains: the largest validated company in the adjacent browser-security lane is scaling globally while the pure-play agent middleware entrants are still pre-revenue.

What's next

Kontext plans to use the funding to expand its engineering team, continue developing its runtime enforcement platform, and support customers deploying AI agents with greater control and visibility. Island intends to invest in R&D and power geographic expansion. The regulatory backdrop adds urgency: Island's round arrives as the AI regulation debate swirls in Washington and Silicon Valley, with lawmakers on both sides debating a development slowdown. Kontext's majority of customers now come from financial services, particularly mid-sized and large companies, a sector where compliance mandates could accelerate adoption of runtime controls. The $4 million seed and the $6.4 billion growth round landed on the same day.