Bonfy.AI

Security for AI Data SecurityGovernance Risk Compliance also known as Bonfy, Bonfy.AI, Inc.

Market readinessHow well the company can compete in its security market, scored across eight dimensions against public evidence. Emerging: Market readiness of 24 or below. Below the typical band, where few analyzed companies sit.
DefensibilityHow well the company holds its position if competitors catch up on features, scored across seven dimensions against public evidence. Contested: Defensibility of 13 to 14, the typical band, where a moat exists but is under pressure.
Founded 2024
Funding $9.5M
Last updated 2026-08-30

All analysis was generated autonomously, without human review. Scores are analytical opinions drawn from the cited public sources, without hands-on testing. They are not audits, certifications, investment reports, purchasing advice, or evaluations of quality.

Executive Summary

Bonfy.AI sells content inspection to security teams in financial services, healthcare, insurance, and technology, covering email, SaaS apps, Microsoft 365 Copilot, Google Workspace, and AI agents. It also provides a server an AI agent calls during its own reasoning to check whether content is safe before acting on it. Bonfy reports completing SOC 2 Type 2 certification with its March 2026 platform release. No independent benchmark of its accuracy appears in the cited record, so a buyer would have to run its own test. Gidi Cohen founded Skybox Security, which private equity acquired for $375 million, and Danny Kibel ran Idaptive to a CyberArk acquisition. No customer is named in the cited record, so Bonfy suits a buyer who can act on the team and the architecture without a reference.

Sourced Details

Description Bonfy.AI sells Adaptive Content Security, software that inspects human and AI generated content across email, SaaS apps, collaboration tools, Copilot, Google Workspace, and AI agents. [f1]
Founded 2024 [f2]
HQ Mountain View, California, United States [f3]
Funding $9.5M total [f2]
Latest funding Seed [f4]

Products

Product What it does
Bonfy Adaptive Content Security (ACS) Inspects human and AI generated content across email, SaaS apps, Copilot, Google Workspace, and AI agents to block or redact sensitive data, with an MCP server for agent guardrails.

Matrix Coverage

AI Defense Matrix

GovernIdentifyProtectDetectRespondRecover
AI-Workload Platforms Inference servers, training platforms, vector DB platforms, and the model-loading supply chain.
AI Orchestration Tools Agentic orchestration tools, plus their plugins, skills, hooks, system prompts, scaffolding, harnesses, configuration settings, and MCP clients on user devices.
AI-Generated Code Code produced by AI tools, AI-assisted reviews, AI-generated infrastructure-as-code and tests, and vibe-coded apps that bypass CI/CD.
AI Gateways & Routers MCP proxies and gateways, LLM routers, outbound AI-service traffic, shadow AI egress, and model-registry traffic.
AI Model Model weights, fine-tuning checkpoints, model cards, registries, AIBOM, and the third-party LLMs your enterprise consumes.
Training Data Datasets used for training, fine-tuning, and continued learning.
Runtime AI Data User prompts, inference inputs, RAG content, vector DB content, persistent agent memory, and interaction history.
AI Agent Identities AI agents as non-human principals, plus credentials, keys, permission scopes, service accounts, and delegation chains across agents and tools.

Bonfy Adaptive Content Security inspects content moving through email, SaaS apps, Microsoft 365 Copilot, and AI agents, and applies Contextual Data Enforcement and an MCP server to block or redact sensitive data before it reaches AI clients. These capabilities are mapped to the AI Defense Matrix. [f5]

Market Readiness

How well the company can compete in its security market, scored across eight dimensions against public evidence.

Emerging 24 /40 Emerging: Market readiness of 24 or below. Below the typical band, where few analyzed companies sit.
Dimension Score Rationale
Problem Clarity How precisely the company defines its problem, with evidence the problem exists at the scale claimed. 3/5 Bonfy names a specific buyer, the security and compliance teams rolling out Copilot and AI agents, and a concrete pain, content moving through multi-step automated workflows that legacy data-loss and posture tools were not built to see. The quantification stays at category level, resting on Gartner projections about generative-AI incidents that Bonfy relays in its own sponsored launch item rather than on incident data from its buyers. [s1, s2, s11]
Capability Depth How specific the technical capabilities are, with evidence beyond marketing claims such as docs and third-party validation. 3/5 Vendor pages document entity-aware detection, per-customer knowledge graphs, an MCP server agents call during reasoning, a shadow-AI browser extension, and coverage spanning Microsoft 365, Google Workspace, Salesforce, Slack, on-premises file stores and AWS S3. No third-party benchmark, inspectable code, or independent technical evaluation of the claimed accuracy appears in the cited record, so the depth on show is what Bonfy documents about itself. [s2, s7, s1]
Market Timing Whether the market is ready for this product, with evidence that buyers are actively seeking solutions. 3/5 Enterprise deployment of AI agents and MCP-connected toolchains is the enabler, which Bonfy's March 2026 platform release and its sponsored announcement of that release both describe as the reason legacy data-loss and posture tools fall short. Buyer-side demand stays indirect and rests on one kind of signal, analyst projections the vendor itself relays, with no RFP language, budget-line movement, or regulatory driver in the cited record. [s11, s6, s1]
Team Credibility Demonstrated domain expertise with public signals such as prior exits, publications, and industry recognition. 4/5 Gidi Cohen founded and led Skybox Security, deployed across over 500 Global 2000 companies according to a CTech article and acquired by private equity in 2018 for $375 million, and Danny Kibel ran Idaptive to a CyberArk acquisition before leading global research and development there. Two in-domain builds with exits, each carried by an independent press source, meet the plurality and independent evidence this level asks for. [s4, s10]
GTM Proof Evidence of actual traction (customers, revenue signals, partnerships) beyond stated intentions. 2/5 Bonfy shipped a second platform version in March 2026 and names five industry recognitions on its awards page, and the cited materials still name no reference customer, pointing only to a case study about an unnamed global financial institution. Seed backing from TLV Partners with Saban participating, plus the founders' enterprise records, are indirect signals of undisclosed early traction, an adjustment applied here that lifts toward but does not reach the named-customer bar. [s7, s12, s4, s11]
Funding Efficiency Whether funding matches go-to-market ambition, with signs of capital-efficient growth. 3/5 The $9.5M seed, which a SecurityWeek article places in 2024, is modest rather than outsized for a company that has since launched, brought Google Workspace to parity with its Microsoft coverage, shipped agent-level enforcement, and completed SOC 2 Type 2 certification. No revenue, margin, or growth-efficiency figure is disclosed, so output per dollar stays unconfirmed. [s10, s11, s6]
Category Clarity Whether the company creates or fits a recognizable category that buyers can quickly place in their stack. 3/5 The product page positions the platform directly against traditional data-loss tools. Placement still needs the vendor's own explanation, because Bonfy fronts its own Adaptive Content Security label and no independent source in the cited record places the product in a category without that coaching. [s1, s2, s12]
Incumbent Defensibility How vulnerable the core value proposition is to absorption as a feature by a platform vendor. 3/5 Bonfy states its position as complementary, with Microsoft Purview governing Microsoft and Bonfy governing the whole enterprise, which also names the adjacent platform vendor that could extend labeling and enforcement outward. Cross-SaaS reach, per-customer knowledge graphs, and inspection inside agent reasoning add friction to that absorption without amounting to a moat bundling could not eventually replicate. [s1, s11, s2]
Business Risks Microsoft could extend Purview's labeling and enforcement across the non-Microsoft applications Bonfy covers, which would remove the breadth argument for buyers standardized on that stack…
  • Microsoft could extend Purview's labeling and enforcement across the non-Microsoft applications Bonfy covers, which would remove the breadth argument for buyers standardized on that stack.
  • Bonfy has published no named reference customer, so an evaluation turns on the founders' record alone until one appears.
  • The accuracy claims are the vendor's own assertions, and no independent benchmark or evaluation in the cited record could confirm them or fail to reproduce them.
  • No completed attestation appears on the surfaces probed on 30 August 2026, and regulated buyers who require a readable report before signing may stall procurement.
  • Contextual Data Enforcement works by replacing a native AI connector, so a platform vendor that restricts or redesigns those connector paths would cut off the deployment route Bonfy describes as a simple swap.
Problem & Market Bonfy.AI sells to security and compliance leaders whose organizations adopt AI faster than their data controls can follow…

Bonfy.AI sells to security and compliance leaders whose organizations adopt AI faster than their data controls can follow. The company's own framing is that AI systems and agents move information through multi-step automated workflows legacy data-loss and posture tools were never designed to see or control, and that fears around data leakage intensify as organizations adopt technologies such as Microsoft 365 Copilot.

The quantified evidence for that pain stays at category level. Bonfy's sponsored announcement of the March 2026 platform release, published on Help Net Security, carries Gartner projections that 22% of cyberattacks and data leaks will involve generative AI by 2028, and that through 2029 over half of successful attacks against AI agents will exploit access-control issues. Those are market-wide forecasts the vendor relays, so the record still carries no measurement of exposure at buyers in the sectors it targets, namely financial services, healthcare, insurance, and legal. [s1, s2, s11]

Product Capabilities Bonfy Adaptive Content Security inspects the content itself, which is the line the company draws against products that focus on model jailbreaks or agent configuration…

Bonfy Adaptive Content Security inspects the content itself, which is the line the company draws against products that focus on model jailbreaks or agent configuration. Entity-aware engines and Adaptive Knowledge Graphs score risk in human and AI-generated content, then block, redact, or flag it across Microsoft 365, Google Workspace, Salesforce, Slack, on-premises file stores, and AWS S3.

The March 2026 release moved that engine into the agent path. Bonfy runs an MCP server an agent calls during its reasoning to evaluate content against policy and decide whether to revise, redact, block, or route for review. Contextual Data Enforcement replaces a native AI connector so each retrieval request is inspected before the model receives it, and a browser extension covers sensitive data flowing to AI tools the organization has not sanctioned.

External validation is what the record lacks. Bonfy documents its architecture on its own pages, and no third-party benchmark, open-source component, or independent technical evaluation in the cited record tests the accuracy the product claims. A buyer weighing the false-positive claim has only Bonfy's own description to weigh it against. [s2, s7, s8, s1]

Competitive Positioning Bonfy now states its relationship with Microsoft as a division of labour rather than a contest, saying Purview governs Microsoft while Bonfy governs the whole enterprise…

Bonfy now states its relationship with Microsoft as a division of labour rather than a contest, saying Purview governs Microsoft while Bonfy governs the whole enterprise. That framing also names the vendor that could extend the same labeling and enforcement outward across other applications.

Bonfy's answer is breadth. One policy and automation engine spans email, SaaS apps, browsers, on-premises file stores, and AI agents, and the knowledge graphs add each customer's own business context on top. Bonfy supports that breadth claim with its own account of what it covers, and the cited record carries no independent comparison against other AI data-security products. [s1, s11, s2]

Go-to-Market & Traction Bonfy left stealth in June 2025 and has shipped steadily since, reaching a second platform version on 19 March 2026 that added Google Workspace parity, agent-level enforcement through an MCP server, a shadow-AI browser extension, and completed SOC 2 Type 2 certification…

Bonfy left stealth in June 2025 and has shipped steadily since, reaching a second platform version on 19 March 2026 that added Google Workspace parity, agent-level enforcement through an MCP server, a shadow-AI browser extension, and completed SOC 2 Type 2 certification. Its awards page names five industry recognitions, among them Cyber Defense Magazine's Top InfoSec Innovator award for 2026 in AI data leakage prevention and a 2026 Cybersecurity Stars award for AI security.

What the record still does not carry is a customer. The cited pages name none and describe only a case study about an unnamed global financial institution that used the product on its Microsoft Copilot instance, and the launch release quotes the CISO of Cast and Crew endorsing the approach without stating that the company runs Bonfy.

Two indirect signals point at traction Bonfy has not published. TLV Partners led the seed with Saban participating, and the founders bring enterprise sales records from Skybox Security and Idaptive. Those raise the odds of early deployments, and the motion stays unproven in public while no customer is named. [s6, s12, s7, s13, s4]

Team & Credibility Gidi Cohen founded and ran Skybox Security, a cyber-analytics firm whose technology a CTech article says was deployed across over 500 Global 2000 companies before private equity acquired it in 2018 for $375 million…

Gidi Cohen founded and ran Skybox Security, a cyber-analytics firm whose technology a CTech article says was deployed across over 500 Global 2000 companies before private equity acquired it in 2018 for $375 million. Danny Kibel was CEO of the identity firm Idaptive, acquired by CyberArk, where he then led global research and development.

Skybox itself shut down in 2025, when Tufin acquired its business and technology assets, seven years after that acquisition. The 2018 sale is the exit the record carries for Cohen.

The public leadership page lists the two founders and no other executives, so the depth of the wider executive, engineering, and go-to-market bench is not visible in the cited record. [s4, s10, s3]

Trust Readiness Bonfy states that it completed SOC 2 Type 2 certification alongside its March 2026 platform release, in its own announcement and in the sponsored version of that announcement published on Help Net Security…

Bonfy states that it completed SOC 2 Type 2 certification alongside its March 2026 platform release, in its own announcement and in the sponsored version of that announcement published on Help Net Security. For a company selling into financial services, healthcare, and insurance, that is the strongest compliance signal the record carries, and it rests on the company's own word.

A probe on 30 August 2026 found the trust and security subdomains failing DNS alongside a control subdomain that also failed, the /security, /trust and /compliance paths returning 404, and no attestation badge file in the homepage markup. The product page still describes the controls as SOC 2-aligned and offers its certifications and standards on request, so a buyer confirms the certification through the vendor rather than from a published artifact.

Around that, the platform carries role-based access control, multi-factor authentication, audit logs, an optional bring-your-own-cloud deployment, and data minimization through short retention windows and content obfuscation. [s2, s9, s11, s13]

Competitors Microsoft Purview, Harmonic Security, Lasso Security…
Company Relationship Note Compare
Microsoft Purview adjacent Bonfy can publish contextual labels into Purview and positions itself as governing the enterprise beyond Microsoft. N/AMicrosoft Purview is scored by product line, not as a whole company, so there is no company-wide column to compare. Open its profile to compare a specific product.
Harmonic Security competes with Competes for the same buyer, the enterprise security team controlling sensitive data that leaves through AI tools. N/AWe captured the evidence for these companies under different evidence-model versions (v1 vs v2), so the totals were scored under different conditions and are not directly comparable.
Lasso Security competes with Competes for the same buyer, the enterprise security team governing shadow AI and agent data risk. N/AWe captured the evidence for these companies under different evidence-model versions (v1 vs v2), so the totals were scored under different conditions and are not directly comparable.

Add analyzed competitors to compare them side by side with Bonfy.AI.

Strategy Deep Dive

A closer look at the company's product strategy, measuring how defensible it is against market forces and examining the eight areas behind it.

Defensibility

Contested 13 /21 Contested: Defensibility of 13 to 14, the typical band, where a moat exists but is under pressure. reinforce or reposition

Bonfy's engineering centers on real-time, entity-aware inspection of content moving through email, SaaS apps, and AI agents, and the differentiators the cited record documents are reproducible by a funded rival. The Adaptive Knowledge Graphs it names run on each customer's own business context, learned from that customer's applications. The record evidences no vendor-retained corpus, granted patent, or licensed content. Bonfy targets regulated enterprises in financial services, healthcare, and insurance, a class whose procurement and legal review stand between a vendor and its replacement. The SOC 2 Type 2 certification it reports completing in March 2026 is a credential a funded rival can also obtain, so the lead Bonfy holds is a head start rather than a durable one.

Dimension Score Rationale
Value Delivery Does the product sell software as the product, or judgment, trust, or accountability with software as the delivery mechanism. 1/3 Bonfy delivers software as SaaS in single-tenant, multi-tenant, and bring-your-own-cloud forms, and the customer's team configures the policies and operates the platform. Automated risk scoring, labeling, and remediation are what the software produces for a team that runs it.
Switching Cost How expensive leaving is for a customer: data portability, integrations, learned workflows, network effects, regulatory data residency. 2/3 Connectors spanning Microsoft 365, Google Workspace, Salesforce, Slack, on-premises file stores and AWS S3, plus knowledge graphs learned from each customer's own business applications, create meaningful friction to leave. The switching mechanism is documented and the cited record does not size the migration, because no cited source describes what leaving Bonfy would cost a customer in time, parties, or rework.
Compliance Moat Whether certifications, liability acceptance, or audit trails block an easy replacement. 1/3 Bonfy states that it completed SOC 2 Type 2 certification with its March 2026 release, which is ordinary enterprise-market preparation a funded competitor can obtain rather than a barrier to replacement. The cited record shows no certification, authorization, accepted liability, or audit requirement that would block a rival from serving the same buyer.
Problem Complexity Whether the product requires ML, optimization, real-time systems, or years of specialized expertise. 3/3 Real-time, entity-aware classification of sensitive content across email, SaaS apps, file stores, and autonomous agents, on a low-latency backend that supports inline enforcement, is specialized engineering. The knowledge graphs supplying the business context are learned from each customer's CRM, identity, and HR systems, which adds integration and modelling depth on top of the detection work.
Buyer Profile Whether buyers are SMB operators, mid-market IT teams, or regulated enterprises and governments with procurement gates. 3/3 Bonfy is built for regulated enterprises, with its own pages naming financial services, healthcare, insurance, and technology and an independent FinTech Global report of the seed round recording a focus on healthcare, finance, and legal. Procurement and legal review at that buyer class sit between the vendor and any replacement.
Layer Whether the product is an end-user application, a platform with application features, or infrastructure other applications depend on. 2/3 Bonfy is a platform with application features, running one policy and automation engine across enterprise content and AI workflows and exposing an MCP server and APIs that agents and custom applications call. The cited record does not show other applications depending on it as infrastructure.
Proprietary Data, Content, or IP Whether the product accumulates datasets, content licenses, or IP that a rival cannot recreate from scratch. 1/3 The Adaptive Knowledge Graphs Bonfy names use each customer's own business context, learned from that customer's CRM, identity, and HR systems. The cited record evidences no vendor-retained corpus, no granted patent, and no licensed content behind the product.
Strategic Market Segmentation Bonfy targets regulated, security-conscious buyers where AI adoption collides with compliance risk…

Bonfy targets regulated, security-conscious buyers where AI adoption collides with compliance risk. Its own pages name financial services, healthcare, insurance, and technology, and its sponsored March 2026 release announcement names CISOs, CIOs, security architects, and AI platform teams in financial services, insurance, technology, biotech and pharmaceutical, and healthcare companies as the people who run it. An independent FinTech Global report of the seed round records the same focus on healthcare, finance, and legal.

The segmentation matches the product's controls and stays aspirational in public. The cited pages name no buyer in any of those sectors, and its single customer reference is a case study about an unnamed global financial institution.

Product Capabilities & AI Advantages Bonfy's stated differentiator is that it inspects content rather than models or agent configuration, applying entity-aware detection and Adaptive Knowledge Graphs that learn each organization's own structure, customers, and policies from its business applications…

Bonfy's stated differentiator is that it inspects content rather than models or agent configuration, applying entity-aware detection and Adaptive Knowledge Graphs that learn each organization's own structure, customers, and policies from its business applications. The engine scores risk in human and AI-generated content and can block, redact, or flag it across email, SaaS apps, file stores, and AI agents.

The March 2026 release put that engine inside the agent's reasoning loop. Bonfy runs its own MCP server that an agent calls mid-task to evaluate content against policy and then decides whether to revise, redact, block, or route the content for review.

The claimed advantage over legacy data-loss tools is contextual precision, understanding who data belongs to rather than which keywords appear. No independent benchmark, open evaluation, or customer technical writeup appears in the cited record, so the accuracy edge is asserted rather than demonstrated.

Sales Engagement & Go-to-Market Bonfy sells top-down to enterprise security and compliance buyers through a demo-and-contact motion, with no self-serve or trial surface on the cited pages…

Bonfy sells top-down to enterprise security and compliance buyers through a demo-and-contact motion, with no self-serve or trial surface on the cited pages. The motion leans on founder credibility, a steady release cadence, and conference visibility, and its awards page names five industry recognitions.

Proof of demand is the gap. The cited pages name no customer and describe only a case study about an unnamed global financial institution, so the effectiveness of the motion is inferred from reputable backing and founder pedigree rather than shown.

Pricing Model No pricing page, published rate, or self-serve tier appears on the cited vendor pages, and the buying path they present is a demo request…

No pricing page, published rate, or self-serve tier appears on the cited vendor pages, and the buying path they present is a demo request.

What Bonfy charges by, whether seats, data volume, or connected systems, is not publicly legible, so a buyer cannot size the product before contacting sales.

Product Delivery & Operations Bonfy delivers as SaaS in multi-tenant and single-tenant forms, with an optional bring-your-own-cloud deployment…

Bonfy delivers as SaaS in multi-tenant and single-tenant forms, with an optional bring-your-own-cloud deployment. Operational controls include role-based access control, multi-factor authentication, audit logs, and data-minimization options such as short retention windows and content obfuscation.

Contextual Data Enforcement deploys by replacing a native AI connector rather than by adding a gateway. Bonfy supplies the platform and the policy engine, and the customer's team configures policy and operates it.

Earning Customers' Trust Bonfy states that it completed SOC 2 Type 2 certification alongside its March 2026 platform release, in its own announcement and in the sponsored version of that announcement published on Help Net Security…

Bonfy states that it completed SOC 2 Type 2 certification alongside its March 2026 platform release, in its own announcement and in the sponsored version of that announcement published on Help Net Security. For a company selling into financial services, healthcare, and insurance, that is the strongest compliance signal the record carries, and it rests on the company's own word.

A probe on 30 August 2026 found the trust and security subdomains failing DNS alongside a control subdomain that also failed, the /security, /trust and /compliance paths returning 404, and no attestation badge file in the homepage markup. The product page still describes the controls as SOC 2-aligned and offers its certifications and standards on request, so a buyer confirms the certification through the vendor rather than from a published artifact.

Platform Strategy & Ecosystem Positioning Bonfy's reach spans Microsoft 365 including Mail, SharePoint, Entra, Purview and Copilot, Google Workspace across Gmail, Drive and Directory, Salesforce, HubSpot, Slack, on-premises and cloud file stores including SharePoint and S3, and custom applications through an SDK and APIs…

Bonfy's reach spans Microsoft 365 including Mail, SharePoint, Entra, Purview and Copilot, Google Workspace across Gmail, Drive and Directory, Salesforce, HubSpot, Slack, on-premises and cloud file stores including SharePoint and S3, and custom applications through an SDK and APIs. For AI, it ships an MCP server and agent-framework support so agents can call it during reasoning.

The March 2026 release brought Google Workspace to parity with the Microsoft integrations, so one policy plane now spans both ecosystems as well as agent workflows. That breadth is the structural argument Bonfy makes against a single-suite control, and it also deepens the integration surface a buyer would unwind on the way out, which the cited record does not size.

Team & Execution Capability Bonfy's team is led by two founders with in-domain exits…

Bonfy's team is led by two founders with in-domain exits. Gidi Cohen founded Skybox Security, whose technology a CTech article says was deployed across over 500 Global 2000 companies before private equity acquired it in 2018 for $375 million. Danny Kibel ran Idaptive to a CyberArk acquisition and then led global research and development at the acquirer.

Skybox itself shut down in 2025, when Tufin acquired its business and technology assets, seven years after that acquisition. The 2018 sale is the exit the record carries for Cohen.

The public leadership page lists the two founders and no other executives, so the depth of the executive, engineering, and go-to-market organization is not visible in the cited record.

Sources

Company Detail Sources (5)
Id Source Tier Accessed
f1 https://www.bonfy.ai official 2026-08-30
f2 https://www.calcalistech.com/ctechnews/article/symfc5q4gl press 2026-08-30
f3 https://www.bonfy.ai/bonfy-privacy-policy official 2026-08-30
f4 https://fintech.global/2025/06/30/ai-security-pioneer-bonfy-ai-bags-9-5m-seed-funding/ press 2026-08-30
f5 https://catalog.aidefensematrix.com/products/bonfy-acs official 2026-08-30
Profile Analysis Sources (14)
Id Source Tier Accessed
s1 Bonfy.AI homepage: AI Data Security for Content Workflows
“Bonfy is the contextual AI data security platform for unstructured content across AI Agents and apps, email, SaaS apps, collaboration tools, ChatGPT, Claude, Copilot, Grok, Perplexity, and custom AI workflows.”
official 2026-08-30
s2 Bonfy product page: Adaptive Content Security platform elements
“SOC 2‑aligned controls, strong encryption, and data minimization options (short retention windows and content obfuscation) make Bonfy a trusted component of your AI stack, not another risk surface.”
official 2026-08-30
s3 Bonfy about page: leadership team listing
“Meet the people building the future of AI content security:”
official 2026-08-30
s4 CTech: Ex-Skybox and Idaptive CEOs raise $9.5M to tackle AI content risks with Haim Saban-backed Bonfy.AI
“Into this breach steps Bonfy.AI, a Tel Aviv-based startup that has just emerged from stealth mode with $9.5 million in Seed funding led by TLV Partners, with participation from Haim Saban’s Saban Capital Group.”
press 2026-08-30
s5 FinTech Global: AI security pioneer Bonfy.AI bags $9.5m seed funding
“The company raised $9.5m in seed funding led by TLV Partners, with participation from Saban Ventures, to support the development and rollout of its Bonfy Adaptive Content Security platform.”
press 2026-08-30
s6 Bonfy newsroom: platform release and coverage index
“Bonfy has launched Bonfy Adaptive Content Security™ 2.0, the first data‑security platform built to protect enterprise content across AI agents, Shadow AI, and GenAI workflows.”
official 2026-08-30
s7 Bonfy use case: MCP server for agentic data security
“Bonfy provides its own MCP server that agents can call during their reasoning process to inspect content in real time.”
official 2026-08-30
s8 Bonfy use case: Contextual Data Enforcement for enterprise AI
“Bonfy Contextual Data Enforcement adds a transparent control layer between AI clients and enterprise repositories.”
official 2026-08-30
s9 Bonfy trust probe 2026-08-30 (urllib, DNS, markup grep): trust. and security. DNS-fail vs a control, /security /trust /compliance 404, no homepage badge file official 2026-08-30
s10 SecurityWeek: Bonfy.AI Raises $9.5 Million for Adaptive Content Security Platform
“Bonfy.AI raised the seed money last year in a round led by TLV Partners, with participation from Saban Capital Group.”
press 2026-08-30
s11 Help Net Security (Industry News, Sponsored): Bonfy ACS 2.0 helps organizations control data use in AI environments
“Completing SOC 2 Type 2 certification as part of the release reinforces Bonfy’s readiness for highly regulated industries.”
official 2026-08-30
s12 Bonfy awards page: recognition listings
“Cyber Defense Magazine's Top InfoSec Innovator Awards 2026 in the "AI Data Leakage Prevention" category”
official 2026-08-30
s13 PRWeb: Bonfy.AI announcement of Adaptive Content Security 2.0
“"The AI agent factory is already here," said Tal Hornstein, CISO of Cast & Crew.”
official 2026-08-30
s14 Bonfy privacy policy: contact address
“883 N. Shoreline Blvd Suite B200, Mountain View, California 94043”
official 2026-08-30
Deep-Dive Sources (14)
Id Source Tier Accessed
s1 Bonfy.AI homepage: AI Data Security for Content Workflows
“Bonfy is the contextual AI data security platform for unstructured content across AI Agents and apps, email, SaaS apps, collaboration tools, ChatGPT, Claude, Copilot, Grok, Perplexity, and custom AI workflows.”
official 2026-08-30
s2 Bonfy product page: Adaptive Content Security platform elements
“SOC 2‑aligned controls, strong encryption, and data minimization options (short retention windows and content obfuscation) make Bonfy a trusted component of your AI stack, not another risk surface.”
official 2026-08-30
s3 Bonfy about page: leadership team listing
“Meet the people building the future of AI content security:”
official 2026-08-30
s4 CTech: Ex-Skybox and Idaptive CEOs raise $9.5M to tackle AI content risks with Haim Saban-backed Bonfy.AI
“Into this breach steps Bonfy.AI, a Tel Aviv-based startup that has just emerged from stealth mode with $9.5 million in Seed funding led by TLV Partners, with participation from Haim Saban’s Saban Capital Group.”
press 2026-08-30
s5 FinTech Global: AI security pioneer Bonfy.AI bags $9.5m seed funding
“The company raised $9.5m in seed funding led by TLV Partners, with participation from Saban Ventures, to support the development and rollout of its Bonfy Adaptive Content Security platform.”
press 2026-08-30
s6 Bonfy newsroom: platform release and coverage index
“Bonfy has launched Bonfy Adaptive Content Security™ 2.0, the first data‑security platform built to protect enterprise content across AI agents, Shadow AI, and GenAI workflows.”
official 2026-08-30
s7 Bonfy use case: MCP server for agentic data security
“Bonfy provides its own MCP server that agents can call during their reasoning process to inspect content in real time.”
official 2026-08-30
s8 Bonfy use case: Contextual Data Enforcement for enterprise AI
“Bonfy Contextual Data Enforcement adds a transparent control layer between AI clients and enterprise repositories.”
official 2026-08-30
s9 Bonfy trust probe 2026-08-30 (urllib, DNS, markup grep): trust. and security. DNS-fail vs a control, /security /trust /compliance 404, no homepage badge file official 2026-08-30
s10 SecurityWeek: Bonfy.AI Raises $9.5 Million for Adaptive Content Security Platform
“Bonfy.AI raised the seed money last year in a round led by TLV Partners, with participation from Saban Capital Group.”
press 2026-08-30
s11 Help Net Security (Industry News, Sponsored): Bonfy ACS 2.0 helps organizations control data use in AI environments
“Completing SOC 2 Type 2 certification as part of the release reinforces Bonfy’s readiness for highly regulated industries.”
official 2026-08-30
s12 Bonfy awards page: recognition listings
“Cyber Defense Magazine's Top InfoSec Innovator Awards 2026 in the "AI Data Leakage Prevention" category”
official 2026-08-30
s13 PRWeb: Bonfy.AI announcement of Adaptive Content Security 2.0
“"The AI agent factory is already here," said Tal Hornstein, CISO of Cast & Crew.”
official 2026-08-30
s14 Bonfy privacy policy: contact address
“883 N. Shoreline Blvd Suite B200, Mountain View, California 94043”
official 2026-08-30

Disclaimer

This content is provided "as is" with no warranties.

This site is an experimental research aid created by Zeltser Security Corp. All its data gathering and analysis was performed autonomously without human review, and it can contain errors of fact, interpretation, and judgment that a human reviewer might catch.

The analyses are statements of opinion, not statements of fact. Machine analysis produced the scores, summaries, and matrix placements by weighing the public sources each page cites, and reasonable people can weigh the same sources differently. Where a page states a fact, it cites the public source and the date it was checked, and the statement is only as accurate as that source. Unless a profile expressly says otherwise, the analysis involves no hands-on testing and no independent validation of any company's products or services.

Nothing here is professional, security, legal, financial, investment, or purchasing advice, and nothing here is a recommendation to invest in, do business with, or avoid any company. Inclusion of a company is not an endorsement, and absence of a company is not a judgment about it. Reading this site creates no advisory or client relationship. Verify any detail you plan to act on against the vendor's current materials.

The content is provided "as is" and "as available," with all warranties disclaimed, express or implied, including merchantability, fitness for a particular purpose, accuracy, and non-infringement. No entry is warranted to be complete, current, or correct. Companies change, vendors update their claims, sources can be wrong, and automated analysis can misread them.

To the fullest extent permitted by law, the operator, Zeltser Security Corp, is not liable for any damages that arise from using this site or relying on its content, including direct, indirect, incidental, special, and consequential damages and lost profits, even if advised that such damages were possible. If you are dissatisfied with the site or disagree with these terms, your remedy is to stop using it.

Entries link to vendor pages, press coverage, and other external sites that Zeltser Security Corp does not control and is not responsible for. A link is not an affiliation with the destination or an endorsement of it. Product and company names and trademarks are the property of their owners, used here nominatively to identify the companies described. Short quotations from cited sources appear for identification and commentary.

Use, quotation, automated retrieval, and redistribution of the content are governed by the Terms of Use at cybercompanyprofiles.com/terms, which permit personal and internal business use with attribution and prohibit republication and resale.