Alice

Security for AI Governance Risk Compliance also known as ActiveFence

Market readinessHow well the company can compete in its security market, scored across eight dimensions against public evidence. Established: Market readiness of 25 to 30, the typical band where most analyzed companies land.
DefensibilityHow well the company holds its position if competitors catch up on features, scored across seven dimensions against public evidence. Defensible: Defensibility of 15 or above. A position that stays hard for rivals to replicate.
Founded 2018
Funding $140M
Last updated 2026-07-12

All analysis was generated autonomously, without human review. Scores are analytical opinions drawn from the cited public sources, without hands-on testing. They are not audits, certifications, investment reports, purchasing advice, or evaluations of quality.

This analysis draws mostly on the vendor's own published materials, with limited outside corroboration.

Executive Summary

Many newer AI-guardrail vendors sell features a competitor can copy in a quarter. Alice, the renamed ActiveFence, carries two things rivals cannot code around. Rabbit Hole is its decade-long private store of billions of adversarial and abusive interactions in more than 120 languages. And eight years catching harmful content for platforms like Amazon and TikTok put its protection inside seven of the ten largest foundational AI models, per its own pages. Neither can be reproduced by writing software. The catch is validation. Alice's roots are UGC trust and safety, and although its own pages describe the corpus as covering jailbreaks and prompt injection, no independent evidence yet validates its efficacy against agent-era threats.

Sourced Details

Description Alice (formerly ActiveFence) is an AI security, safety, and trust company that tests, protects, and monitors enterprise AI apps and agents against prompt injection, adversarial attacks, and harmful content. [f1]
Founded 2018 [f2]
HQ New York, USA, and Tel Aviv, Israel [f3]
Funding $140M total [f2]
Latest funding Series B announced in 2021, led by CRV and Highland Europe [f3]

Products

Product What it does
WonderSuite AI governance and security platform that tests, protects, and monitors enterprise AI apps and agents across the deployment lifecycle.
WonderBuild Pre-launch adversarial stress-testing that probes AI models, apps, and agents for vulnerabilities before deployment.
WonderFence Dynamic runtime guardrails that intercept harmful inputs and outputs of live AI apps and agents and enforce policy in real time.
WonderCheck Ongoing automated red-teaming and evaluation of production AI systems to detect drift and surface emerging risks for remediation.
Rabbit Hole Adversarial intelligence engine built on billions of harmful and manipulative data samples that powers the WonderSuite products.

Matrix Coverage

AI Defense Matrix

GovernIdentifyProtectDetectRespondRecover
AI-Workload Platforms Inference servers, training platforms, vector DB platforms, and the model-loading supply chain.
AI Orchestration Tools Agentic orchestration tools, plus their plugins, skills, hooks, system prompts, scaffolding, harnesses, configuration settings, and MCP clients on user devices.
AI-Generated Code Code produced by AI tools, AI-assisted reviews, AI-generated infrastructure-as-code and tests, and vibe-coded apps that bypass CI/CD.
AI Gateways & Routers MCP proxies and gateways, LLM routers, outbound AI-service traffic, shadow AI egress, and model-registry traffic.
AI Model Model weights, fine-tuning checkpoints, model cards, registries, AIBOM, and the third-party LLMs your enterprise consumes.
Training Data Datasets used for training, fine-tuning, and continued learning.
Runtime AI Data User prompts, inference inputs, RAG content, vector DB content, persistent agent memory, and interaction history.
AI Agent Identities AI agents as non-human principals, plus credentials, keys, permission scopes, service accounts, and delegation chains across agents and tools.

Alice WonderFence applies dynamic runtime guardrails to the prompts, inputs, and outputs of live AI apps and agents, while WonderBuild and WonderCheck stress-test and red-team AI models before and after launch. These capabilities are mapped to the AI Defense Matrix. [f4]

Market Readiness

How well the company can compete in its security market, scored across eight dimensions against public evidence.

Established 26 /40 Established: Market readiness of 25 to 30, the typical band where most analyzed companies land.
Dimension Score
Problem Clarity How precisely the company defines its problem, with evidence the problem exists at the scale claimed. 3/5
Capability Depth How specific the technical capabilities are, with evidence beyond marketing claims such as docs, demos, and third-party validation. 3/5
Market Timing Whether the market is ready for this product, with evidence that buyers are actively seeking solutions. 4/5
Team Credibility Demonstrated domain expertise with public signals such as prior exits, publications, and industry recognition. 3/5
GTM Proof Evidence of actual traction (customers, revenue signals, partnerships) beyond stated intentions. 4/5
Funding Efficiency Whether funding matches go-to-market ambition, with signs of capital-efficient growth. 3/5
Category Clarity Whether the company creates or fits a recognizable category that buyers can quickly place in their stack. 3/5
Incumbent Defensibility How vulnerable the core value proposition is to absorption as a feature by a platform vendor. 3/5

Unlock the Full Analysis

The reasoning for the scores, the strategy deep dive, the business risks, and more. AI access comes with the purchase, so your AI tools can read the full profile too. You keep 12 months of access.

One-time purchase: $20 per profile.

Unlock

Reading several? Unlock the entire catalog.

Business Risks
Problem & Market
Product Capabilities
Competitive Positioning
Go-to-Market & Traction
Team & Credibility
Trust Readiness
Competitors

Strategy Deep Dive

A closer look at the company's product strategy, measuring how defensible it is against market forces and examining the eight areas behind it.

Defensibility

Defensible 15 /21 Defensible: Defensibility of 15 or above. A position that stays hard for rivals to replicate. press the advantage

Dimension Score
Value Delivery Does the product sell software as the product, or judgment, trust, or accountability with software as the delivery mechanism. 1/3
Switching Cost How expensive leaving is for a customer: data portability, integrations, learned workflows, network effects, regulatory data residency. 2/3
Compliance Moat Whether certifications, liability acceptance, or audit trails block an easy replacement. 1/3
Problem Complexity Whether the product requires ML, optimization, real-time systems, or years of specialized expertise. 3/3
Buyer Profile Whether buyers are SMB operators, mid-market IT teams, or regulated enterprises and governments with procurement gates. 3/3
Layer Whether the product is an end-user application, a platform with application features, or infrastructure other applications depend on. 2/3
Proprietary Data, Content, or IP Whether the product accumulates datasets, content licenses, or IP that a rival cannot recreate from scratch. 3/3

Unlock the Full Analysis

The reasoning for the scores, the strategy deep dive, the business risks, and more. AI access comes with the purchase, so your AI tools can read the full profile too. You keep 12 months of access.

One-time purchase: $20 per profile.

Unlock

Reading several? Unlock the entire catalog.

Strategic Market Segmentation
Product Capabilities & AI Advantages
Sales Engagement & Go-to-Market
Pricing Model
Product Delivery & Operations
Earning Customers' Trust
Platform Strategy & Ecosystem Positioning
Team & Execution Capability

Sources

Company Detail Sources (4)
Id Source Tier Accessed
f1 Alice: LLM Security and Governance for Production AI official 2026-06-24
f2 Calcalist: ActiveFence rebrands as Alice, shifting focus to AI model security press 2026-06-24
f3 TechCrunch: ActiveFence comes out of the shadows with $100M in funding press 2026-06-24
f4 Alice: Security Platform for Enterprise AI official 2026-06-24
Profile Analysis Sources (6)
Id Source Tier Accessed
s1 Alice: Secure, Safe, and Trustworthy AI
“WonderFence: Dynamic Runtime Guardrails. WonderBuild: Pre-Launch Stress-Testing. WonderCheck: Ongoing Automated Red-Teaming.”
official 2026-06-24
s2 Alice: AI Governance and Safety Platform for Enterprise
“Security Platform for Enterprise AI. Test, Protect, and Monitor AI Apps and Agents.”
official 2026-06-24
s3 Alice: LLM Security and Governance for Production AI
“WonderFence is runtime protection, it intercepts harmful inputs and outputs in real time with latency under 150ms. Customers: TikTok, Amazon, NVIDIA, Cohere, Black Forest Labs.”
official 2026-06-24
s4 PR Newswire: The Secret Sauce Protecting the Internet is Now Securing AI, ActiveFence is now Alice
“For nearly a decade, Alice has been protecting over 3 billion people and 7 of the world's 10 largest AI foundation models, working with clients such as Amazon, TikTok, Nvidia, Cohere, and Black Forest Labs.”
press 2026-06-24
s5 Calcalist: ActiveFence rebrands as Alice, shifting focus to AI model security
“ActiveFence, founded in 2018, is rebranding as Alice and expanding into AI model security. The company has raised $140 million to date.”
press 2026-06-24
s6 TechCrunch: ActiveFence comes out of the shadows with $100M in funding
“The $100 million covered two rounds: a Series B led by CRV and Highland Europe and a Series A. The company was understood to be valued over $500 million and co-headquartered in New York and Tel Aviv.”
press 2026-06-24
Deep-Dive Sources (6)
Id Source Tier Accessed
s1 Alice: Secure, Safe, and Trustworthy AI
“WonderBuild: Pre-Launch Stress-Testing. WonderFence: Dynamic Runtime Guardrails. WonderCheck: Ongoing Automated Red-Teaming.”
official 2026-07-08
s2 Alice: AI Governance and Safety Platform for Enterprise
“WonderSuite is the AI security platform for teams launching customer-facing AI in regulated industries. Test your security and safety posture before launch. Protect your AI experience in production. Catch what changes over time.”
official 2026-07-08
s3 Alice: Production LLM Security and Real-Time AI Guardrails
“Rabbit Hole is Alice's proprietary adversarial intelligence engine, the world's largest dataset of harmful, manipulative, and adversarial AI interaction data. Built on nearly a decade of global research, it contains billions of real-world adversarial examples across 120+ languages.”
official 2026-07-08
s4 Alice: Adversarial Threat Intelligence for AI Systems (Rabbit Hole)
“For a decade, we've collected and analyzed billions of adversarial data samples, building deep insight into how harm and misuse evolve in the real world.”
official 2026-07-08
s5 PR Newswire: The Secret Sauce Protecting the Internet is Now Securing AI, ActiveFence is now Alice
“For nearly a decade, Alice has been protecting over 3 billion people and 7 of the world's 10 largest AI foundation models, working with clients and partners such as Amazon, TikTok, Nvidia, Cohere, and Black Forest Labs.”
press 2026-07-08
s6 Calcalist: ActiveFence rebrands as Alice, shifting focus to AI model security
“The company, founded in 2018, has raised $140 million to date. Its investors include Resolute Ventures, Grove Ventures, CRV, Highland Europe, Vintage Investment Partners, Norwest Venture Partners, and Maj Invest.”
press 2026-07-08

Disclaimer

This content is provided "as is" with no warranties.

This site is an experimental research aid created by Zeltser Security Corp. All its data gathering and analysis was performed autonomously without human review, and it can contain errors of fact, interpretation, and judgment that a human reviewer might catch.

The analyses are statements of opinion, not statements of fact. Machine analysis produced the scores, summaries, and matrix placements by weighing the public sources each page cites, and reasonable people can weigh the same sources differently. Where a page states a fact, it cites the public source and the date it was checked, and the statement is only as accurate as that source. Unless a profile expressly says otherwise, the analysis involves no hands-on testing and no independent validation of any company's products or services.

Nothing here is professional, security, legal, financial, investment, or purchasing advice, and nothing here is a recommendation to invest in, do business with, or avoid any company. Inclusion of a company is not an endorsement, and absence of a company is not a judgment about it. Reading this site creates no advisory or client relationship. Verify any detail you plan to act on against the vendor's current materials.

The content is provided "as is" and "as available," with all warranties disclaimed, express or implied, including merchantability, fitness for a particular purpose, accuracy, and non-infringement. No entry is warranted to be complete, current, or correct. Companies change, vendors update their claims, sources can be wrong, and automated analysis can misread them.

To the fullest extent permitted by law, the operator, Zeltser Security Corp, is not liable for any damages that arise from using this site or relying on its content, including direct, indirect, incidental, special, and consequential damages and lost profits, even if advised that such damages were possible. If you are dissatisfied with the site or disagree with these terms, your remedy is to stop using it.

Entries link to vendor pages, press coverage, and other external sites that Zeltser Security Corp does not control and is not responsible for. A link is not an affiliation with the destination or an endorsement of it. Product and company names and trademarks are the property of their owners, used here nominatively to identify the companies described. Short quotations from cited sources appear for identification and commentary.

Do not republish its content or share access without the operator's permission.