IronCore Labs

Security for AI Data SecurityPrivacyDeveloper Tools

Market readinessHow well the company can compete in its security market, scored across eight dimensions against public evidence. Established: Market readiness of 25 to 30, the typical band where most analyzed companies land.
DefensibilityHow well the company holds its position if competitors catch up on features, scored across seven dimensions against public evidence. Contested: Defensibility of 13 to 14, the typical band, where a moat exists but is under pressure.
Founded 2015
Last updated 2026-09-11

All analysis was generated autonomously, without human review. Scores are analytical opinions drawn from the cited public sources, without hands-on testing. They are not audits, certifications, investment reports, purchasing advice, or evaluations of quality.

Executive Summary

IronCore Labs, founded in 2015, sells encryption tools for engineering teams building SaaS applications, search services, and AI features. Its Cloaked AI toolkit applies published cryptography research so teams can search encrypted AI data across multiple databases. IronCore reported selling $500,000 in notes convertible into equity. It also announced Gartner Cool Vendor in Data Security recognition for 2025. IronCore benefits from specialist cryptography and encryption patents, but database vendors could add similar protection to their products.

Sourced Details

Description IronCore Labs sells application-layer encryption tools that keep sensitive data in SaaS applications, search indices, and AI vector databases encrypted while it remains usable. [f1]
Founded 2015 [f2]
HQ Boulder, Colorado, United States [f3]
Latest funding Regulation D offering of promissory notes convertible into equity, $500,000 sold (Form D, April 2024) [f3]

Products

Product What it does
Cloaked AI An SDK that encrypts AI vector embeddings with searchable data-in-use encryption so nearest-neighbor search and RAG workflows keep working on protected data.
SaaS Shield A platform that adds per-tenant application-layer encryption, customer-managed keys, and data access visibility to multi-tenant SaaS applications.
Cloaked Search A transparent proxy that adds searchable application-layer encryption to sensitive data in Elasticsearch and OpenSearch indices.
Data Control Platform Developer SDKs for building end-to-end encrypted applications with cryptographic access controls, sharing, and groups.
VectorLens A command-line scanner that detects and classifies PII hidden in vector embeddings exported from vector databases.

Matrix Coverage

AI Defense Matrix

GovernIdentifyProtectDetectRespondRecover
AI-Workload Platforms Inference servers, training platforms, vector DB platforms, and the model-loading supply chain.
AI Orchestration Tools Agentic orchestration tools, plus their plugins, skills, hooks, system prompts, scaffolding, harnesses, configuration settings, and MCP clients on user devices.
AI-Generated Code Code produced by AI tools, AI-assisted reviews, AI-generated infrastructure-as-code and tests, and vibe-coded apps that bypass CI/CD.
AI Gateways & Routers MCP proxies and gateways, LLM routers, outbound AI-service traffic, shadow AI egress, and model-registry traffic.
AI Model Model weights, fine-tuning checkpoints, model cards, registries, AIBOM, and the third-party LLMs your enterprise consumes.
Training Data Datasets used for training, fine-tuning, and continued learning.
Runtime AI Data User prompts, inference inputs, RAG content, vector DB content, persistent agent memory, and interaction history.
AI Agent Identities AI agents as non-human principals, plus credentials, keys, permission scopes, service accounts, and delegation chains across agents and tools.

Cloaked AI applies searchable, distance-preserving encryption to AI vector embeddings so they stay usable for nearest-neighbor search while protecting the embedded source data against inversion attacks. These capabilities are mapped to the AI Defense Matrix. [f4]

Cyber Defense Matrix

IdentifyProtectDetectRespondRecover
Devices Workstations, servers, phones, tablets, storage, network devices, IoT infrastructure, and similar hardware.
Applications Software, interactions, and application flows on the devices.
Networks Connections and traffic flowing among devices and apps, plus communication paths.
Data Content at rest, in transit, or in use across devices, apps, and networks.
Users The people using the devices, apps, networks, and data.

SaaS Shield adds per-tenant application-layer encryption to data in multi-tenant SaaS applications, Cloaked Search encrypts Elasticsearch and OpenSearch indices, and Data Control Platform provides SDKs for end-to-end encrypted applications. These products are mapped to the Cyber Defense Matrix. [f1]

Market Readiness

How well the company can compete in its security market, scored across eight dimensions against public evidence.

Established 26 /40 Established: Market readiness of 25 to 30, the typical band where most analyzed companies land.
Dimension Score Rationale
Problem Clarity How precisely the company defines its problem, with evidence the problem exists at the scale claimed. 4/5 The buyer is specific (engineering teams building SaaS and AI features on sensitive data), and the pain is corroborated outside the vendor: peer-reviewed research demonstrates embedding-inversion attacks, and Gartner's 2025 Cool Vendors report is themed on protecting data in AI systems. [s2, s9, s19, s14]
Capability Depth How specific the technical capabilities are, with evidence beyond marketing claims such as docs and third-party validation. 4/5 A public documentation portal, the open-source ironcore-alloy SDK, and a documented encryption technique based on a paper published at the SCN 2022 conference give the capability claims external validation points beyond marketing pages. [s7, s8, s18, s21]
Market Timing Whether the market is ready for this product, with evidence that buyers are actively seeking solutions. 3/5 Cloaked AI launched in November 2023 as RAG and vector databases turned embeddings into a new store of sensitive data, and ACL 2024 research confirmed embeddings can be inverted, but buyer-side demand for embedding encryption remains indirect, resting on one analyst report and the vendor's own argument. [s17, s19, s14]
Team Credibility Demonstrated domain expertise with public signals such as prior exits, publications, and industry recognition. 3/5 Founders Patrick Walsh and Robert Wall are named in the company's SEC Form D, and Wall served as chief architect of Oracle Service Cloud. Walsh is a named inventor on cryptography patents and authors the company's public announcements, including the 2025 Gartner recognition and 2026 VectorLens launch posts, but the public record shows no prior exit or sustained independent recognition. [s16, s20, s23, s13, s6]
GTM Proof Evidence of actual traction (customers, revenue signals, partnerships) beyond stated intentions. 3/5 The vendor's pages name customers including HubSpot (a CISO testimonial) and Broadcom (a product-manager testimonial), plus a Thales Verified Partner badge, with published pricing, while the cited record provides no independent corroboration of customer scale. [s1, s2, s3, s11]
Funding Efficiency Whether funding matches go-to-market ambition, with signs of capital-efficient growth. 3/5 Four Form D filings from 2017 to 2024, with a 1,500,000 dollar offering in 2017 and 500,000 dollars sold in 2024, match a small operation that keeps shipping new products, but no disclosed revenue or growth figure confirms efficiency. [s15, s16, s25, s26, s24, s6]
Category Clarity Whether the company creates or fits a recognizable category that buyers can quickly place in their stack. 3/5 Application-layer and vector encryption sit inside the recognizable data-security category, but the specific stack slot still needs vendor explanation, and the Cool Vendor recognition is announced by the vendor rather than independently reported. [s13, s14]
Incumbent Defensibility How vulnerable the core value proposition is to absorption as a feature by a platform vendor. 3/5 Granted patents and specialist cryptography create absorption friction, but the lead product's encryption technique is based on public research that a vector database or cloud platform could implement natively. [s22, s18, s8]
Business Risks Vector database and search vendors, including the Elasticsearch and OpenSearch ecosystems Cloaked Search proxies, could ship native embedding and index encryption, absorbing IronCore's core function into the storage layer…
  • Vector database and search vendors, including the Elasticsearch and OpenSearch ecosystems Cloaked Search proxies, could ship native embedding and index encryption, absorbing IronCore's core function into the storage layer.
  • Cloaked AI's algorithm is published research shipped under AGPL, which lowers the know-how barrier for a funded rival or a database vendor to build similar vector encryption, and the cited record does not establish whether IronCore's patents would constrain such an implementation.
  • The vendor's own documentation concedes that property-preserving encryption trades some protection against usability, and buyers who cannot accept reduced search relevance will not deploy it on production workloads.
  • The Gartner recognition could expire commercially: with small disclosed capital and a small set of vendor-displayed reference customers, IronCore may lack the sales capacity to convert analyst attention into independently reported enterprise traction before larger data-security platforms enter the embedding-protection space.
Problem & Market IronCore Labs targets the searchable data that conventional at-rest and in-transit encryption leaves readable in use: modern applications copy sensitive data into stores that must stay searchable, so the data ends up unencrypted in practice. The sharpest version of the problem is in AI systems. Vector embeddings, the numeric representations that power RAG and semantic search, approximate their source text closely enough that researchers have shown they can be inverted back into readable data. IronCore's own threat documentation catalogs these attacks, and independent work accepted at ACL 2024 demonstrated inversion even without access to the embedding model. The buyer IronCore describes is an engineering team, not a security operations center. Its products speak to software vendors that must protect customer data inside multi-tenant SaaS applications, keep Elasticsearch or OpenSearch indices searchable, or ship generative AI features over private data. Gartner's decision to theme its 2025 Cool Vendors in Data Security report around GenAI-era data protection places the problem inside a recognized analyst category, though the report itself is gated…

IronCore Labs targets the searchable data that conventional at-rest and in-transit encryption leaves readable in use: modern applications copy sensitive data into stores that must stay searchable, so the data ends up unencrypted in practice. The sharpest version of the problem is in AI systems. Vector embeddings, the numeric representations that power RAG and semantic search, approximate their source text closely enough that researchers have shown they can be inverted back into readable data. IronCore's own threat documentation catalogs these attacks, and independent work accepted at ACL 2024 demonstrated inversion even without access to the embedding model.

The buyer IronCore describes is an engineering team, not a security operations center. Its products speak to software vendors that must protect customer data inside multi-tenant SaaS applications, keep Elasticsearch or OpenSearch indices searchable, or ship generative AI features over private data. Gartner's decision to theme its 2025 Cool Vendors in Data Security report around GenAI-era data protection places the problem inside a recognized analyst category, though the report itself is gated. [s1, s2, s9, s19, s14]

Product Capabilities The product family is a set of encryption tools an engineering team embeds rather than a monitoring platform a security team operates. Cloaked AI is an SDK that encrypts vector embeddings while preserving approximate distance comparisons, so nearest-neighbor search, clustering, and RAG pipelines keep working against a vector database that never sees plaintext. SaaS Shield adds per-tenant application-layer encryption to multi-tenant SaaS apps, brokering each tenant's keys so customers can hold their own. Cloaked Search is a transparent proxy that encrypts Elasticsearch and OpenSearch indices, and Data Control Platform provides SDKs for end-to-end encrypted applications. VectorLens, released in June 2026, scans exported embeddings and reports the PII hiding in them. The engineering is unusually inspectable for a vendor this size. The ironcore-alloy SDK is open source under AGPL with paid commercial licenses, and the documentation names the peer-reviewed paper behind Cloaked AI's scheme, published at the SCN 2022 cryptography conference. The docs also concede the tradeoff: property-preserving encryption gives up some protection for usability, and larger approximation factors reduce search relevance. That candor supports the capability story while defining its limits…

The product family is a set of encryption tools an engineering team embeds rather than a monitoring platform a security team operates. Cloaked AI is an SDK that encrypts vector embeddings while preserving approximate distance comparisons, so nearest-neighbor search, clustering, and RAG pipelines keep working against a vector database that never sees plaintext. SaaS Shield adds per-tenant application-layer encryption to multi-tenant SaaS apps, brokering each tenant's keys so customers can hold their own. Cloaked Search is a transparent proxy that encrypts Elasticsearch and OpenSearch indices, and Data Control Platform provides SDKs for end-to-end encrypted applications. VectorLens, released in June 2026, scans exported embeddings and reports the PII hiding in them.

The engineering is unusually inspectable for a vendor this size. The ironcore-alloy SDK is open source under AGPL with paid commercial licenses, and the documentation names the peer-reviewed paper behind Cloaked AI's scheme, published at the SCN 2022 cryptography conference. The docs also concede the tradeoff: property-preserving encryption gives up some protection for usability, and larger approximation factors reduce search relevance. That candor supports the capability story while defining its limits. [s2, s3, s4, s5, s6, s8, s18, s21, s12]

Competitive Positioning IronCore's stated differentiation is practical: leave data where it lives, encrypt it in place, and keep the search working. Its pages describe Cloaked AI as database-agnostic across the major vector stores, Cloaked Search as a drop-in proxy for Elasticsearch and OpenSearch, and SaaS Shield as per-tenant application-layer encryption. The cited record does not compare alternatives such as data-privacy vaults, tokenization services, or homomorphic-computation vendors on cost or complexity, so no such comparison is drawn here. The main competitive threat comes from the storage layer. Every database IronCore protects is owned by a vendor that could add native encryption features, and Cloaked AI's underlying scheme is published research shipped in an open-source SDK, which lowers the know-how barrier to a similar capability. IronCore's granted patents cover its group transform encryption and secured search techniques, which read most directly on the older product lines, and the cited record does not establish whether they would constrain a rival's vector-encryption implementation…

IronCore's stated differentiation is practical: leave data where it lives, encrypt it in place, and keep the search working. Its pages describe Cloaked AI as database-agnostic across the major vector stores, Cloaked Search as a drop-in proxy for Elasticsearch and OpenSearch, and SaaS Shield as per-tenant application-layer encryption. The cited record does not compare alternatives such as data-privacy vaults, tokenization services, or homomorphic-computation vendors on cost or complexity, so no such comparison is drawn here.

The main competitive threat comes from the storage layer. Every database IronCore protects is owned by a vendor that could add native encryption features, and Cloaked AI's underlying scheme is published research shipped in an open-source SDK, which lowers the know-how barrier to a similar capability. IronCore's granted patents cover its group transform encryption and secured search techniques, which read most directly on the older product lines, and the cited record does not establish whether they would constrain a rival's vector-encryption implementation. [s1, s2, s4, s3, s8, s18, s21, s22]

Go-to-Market & Traction The go-to-market motion is developer-led and priced in the open…

The go-to-market motion is developer-led and priced in the open. Cloaked AI is free for non-production and AGPL-compatible use, SaaS Shield publishes a Pro tier at $1,954 per month plus $25 per tenant, and the documentation walks an engineer from a decision tree to working code without a sales call. The public docs and trials support a developer-led entry point, while enterprise tiers remain sales-assisted.

The named traction evidence sits on the vendor's own pages. The Cloaked AI page displays Broadcom under a heading about companies that trust IronCore, the homepage carries a HubSpot chief-information-security-officer testimonial, the SaaS Shield page quotes a Broadcom product manager, and a Thales Verified Partner badge signals a key-management partnership. The Gartner Cool Vendor recognition in 2025 is the strongest external signal, announced by the company itself since the report is gated. The cited record provides no independent corroboration of customer scale. [s12, s11, s7, s1, s2, s3, s13, s14]

Team & Credibility The founding team is verifiable and technical…

The founding team is verifiable and technical. Patrick Walsh, CEO and co-founder, and Robert Wall, co-founder and CTO, are both named as executive officers in the company's first SEC Form D from 2017. Wall served as chief architect for Oracle Service Cloud, a multi-tenant SaaS customer-experience platform, a background that maps directly to IronCore's multi-tenant encryption focus, and Walsh is a named inventor on multiple cryptography patents.

The record shows senior in-domain roles rather than exits or sustained independent recognition. Walsh fronts the company's public voice, writing its launch and recognition announcements, a founder-led voice a decade into the company's life. [s16, s20, s23, s13, s6]

Trust Readiness The trust posture matches what the company sells…

The trust posture matches what the company sells. The trust center states SOC 2 certification, describes a bug-bounty program that rewards researchers, and maintains published security advisories. The transparency principles extend to the product itself: the SDK code is public, the underlying algorithm is published research, and the documentation names its own security tradeoffs.

For a vendor whose pitch is reducing the trust a customer must place in its infrastructure, the posture is coherent: SaaS Shield's customer-managed keys and the Data Control Platform's end-to-end encryption are designed so IronCore and the SaaS vendor hold as little readable customer data as possible. [s10, s21, s18, s3, s5]

Competitors Skyflow, Enveil, Duality Technologies, Thales…
Company Relationship Note Compare
Skyflow competes with
Enveil adjacent N/AWe captured the evidence for these companies under different evidence-model versions (v1 vs v2), so the totals were scored under different conditions and are not directly comparable.
Duality Technologies adjacent N/AWe captured the evidence for these companies under different evidence-model versions (v1 vs v2), so the totals were scored under different conditions and are not directly comparable.
Thales adjacent N/AWe scored these companies at different scopes, so the totals measure different things.

Add analyzed competitors to compare them side by side with IronCore Labs.

Strategy Deep Dive

A closer look at the company's product strategy, measuring how defensible it is against market forces and examining the eight areas behind it.

Defensibility

Contested 14 /21 Contested: Defensibility of 13 to 14, the typical band, where a moat exists but is under pressure. reinforce or reposition

IronCore Labs’ strongest assets and its biggest gap belong to different products. The granted patents cover its group encryption technique behind the older end-to-end encryption line. Cloaked AI, the AI-data encryption product, is based on a public 2022 academic scheme and ships as an open-source SDK, so a funded rival can rebuild it from the same sources. The durable friction is where the code runs. The encryption executes inside customer applications, and because stored data stays encrypted under IronCore’s scheme, a departing customer could need to re-encrypt that data and rewrite the code that calls the SDK. The customer base is the weaker side. IronCore sells to engineering teams at software companies, where public pricing points to low friction at initial adoption.

Dimension Score Rationale
Value Delivery Does the product sell software as the product, or judgment, trust, or accountability with software as the delivery mechanism. 1/3 IronCore delivers software its customers' engineers embed and run, SDKs, proxies, and a command-line scanner, priced monthly and by tenant for SaaS Shield. Customers pay for features, the software-product level.
Switching Cost How expensive leaving is for a customer: data portability, integrations, learned workflows, network effects, regulatory data residency. 2/3 Stored data encrypted under IronCore's scheme and application code written against its SDKs imply re-encryption and re-integration work on exit, an inferred cost, and no public customer evidence documents actual departures or integration depth.
Compliance Moat Whether certifications, liability acceptance, or audit trails block an easy replacement. 1/3 The trust center states SOC 2 certification, a table-stakes attestation that would not block a determined replacement.
Problem Complexity Whether the product requires ML, optimization, real-time systems, or years of specialized expertise. 3/3 Usable encryption-in-use is specialist cryptography: Cloaked AI's scheme comes from peer-reviewed work published at the SCN 2022 conference, and the documentation engages its security-usability tradeoffs directly.
Buyer Profile Whether buyers are SMB operators, mid-market IT teams, or regulated enterprises and governments with procurement gates. 2/3 Buyers are engineering teams at software companies purchasing at published prices of $1,954 per month plus per-tenant fees, a developer-led mid-market motion, while enterprise deployments move through a negotiated contact-us tier.
Layer Whether the product is an end-user application, a platform with application features, or infrastructure other applications depend on. 3/3 The SDKs and proxies run inside the customer's application data path, and dependent applications need them at runtime to read their own encrypted data, infrastructure rather than an end-user application.
Proprietary Data, Content, or IP Whether the product accumulates datasets, content licenses, or IP that a rival cannot recreate from scratch. 2/3 Granted patents cover the company's own mechanisms, the Orthogonal Access Control transform-encryption family and a secured-search technique, which lifts it above the no-IP level, but Cloaked AI's technique is based on public research a rival can implement, and no cross-customer data asset appears in the record.
Strategic Market Segmentation IronCore sells to software companies through their engineering organizations, and it also addresses security, privacy, and governance teams for its VectorLens scanning use case. SaaS Shield addresses multi-tenant SaaS vendors whose enterprise customers demand per-tenant or customer-held keys, Cloaked AI addresses teams shipping AI and RAG features over private data, and Cloaked Search addresses anyone holding sensitive data in Elasticsearch or OpenSearch. The pricing unit, dollars per tenant per month, matches how a SaaS vendor counts its own business. The company's Gartner announcement relays the report's advice that organizations with sensitive data in AI, including regulated industries, evaluate the product. That framing points the segment upmarket, toward buyers whose compliance obligations justify encryption-in-use, while the published price points and free tiers keep the entry motion accessible to small engineering teams…

IronCore sells to software companies through their engineering organizations, and it also addresses security, privacy, and governance teams for its VectorLens scanning use case. SaaS Shield addresses multi-tenant SaaS vendors whose enterprise customers demand per-tenant or customer-held keys, Cloaked AI addresses teams shipping AI and RAG features over private data, and Cloaked Search addresses anyone holding sensitive data in Elasticsearch or OpenSearch. The pricing unit, dollars per tenant per month, matches how a SaaS vendor counts its own business.

The company's Gartner announcement relays the report's advice that organizations with sensitive data in AI, including regulated industries, evaluate the product. That framing points the segment upmarket, toward buyers whose compliance obligations justify encryption-in-use, while the published price points and free tiers keep the entry motion accessible to small engineering teams.

Product Capabilities & AI Advantages The core capability is encryption that preserves usefulness…

The core capability is encryption that preserves usefulness. Cloaked AI encrypts vector embeddings while approximately preserving the distances between them, closely enough that nearest-neighbor search, clustering, and RAG pipelines keep working against a database that holds only ciphertext. The documentation traces the scheme to a named peer-reviewed paper published at the SCN 2022 cryptography conference and candidly describes the tradeoff: property-preserving encryption gives up some protection for usability, tuned by a configurable approximation factor that trades security against search accuracy. The homepage lists compatibility with Pinecone, Qdrant, Weaviate, Chroma, OpenSearch, Elasticsearch, pgvector, Milvus, LanceDB, and Redis.

IronCore secures AI data rather than applying AI to security work. The company differentiates through cryptographic engineering instead of models or data. The ironcore-alloy SDK ships open source under AGPL in multiple languages, and VectorLens, released in June 2026, extends the family from protection into discovery by scanning exported embeddings for PII.

Sales Engagement & Go-to-Market The motion is mixed…

The motion is mixed. Cloaked AI is self-serve: free for non-production and AGPL-compatible uses, with documentation that moves an engineer from a product decision tree to working code without a sales conversation. SaaS Shield's published tiers sit beside a contact-us path, and enterprise deployments are sales-assisted. The AGPL license doubles as the sales funnel: open-source users who embed the SDK in closed-source production software need a commercial license.

The named traction evidence sits on the vendor's own pages. The Cloaked AI page shows HubSpot and Broadcom logos, the homepage quotes HubSpot's chief information security officer, the SaaS Shield page quotes a Broadcom product manager, and a Thales Verified Partner badge signals a key-management partnership. The 2025 Gartner Cool Vendor recognition is the strongest demand-generation asset, and Patrick Walsh writes the company's announcements himself, a founder-led voice a decade into the company's life.

Pricing Model SaaS Shield charges by the tenant, the unit its SaaS-vendor buyers already use to measure their own business: a published Pro tier at $1,954 per month plus $25 per tenant for up to 100 tenants, with Cloaked Search and Cloaked AI available as per-tenant add-ons. Cloaked AI also sells standalone at $1,478 per month with limits set by users and projects rather than tenants. The published Pro tiers give buyers a transparent entry point, while larger and enterprise deployments move through negotiated procurement. Cloaked AI runs a dual-license model: free under AGPL and for non-production use, paid for commercial closed-source deployment. That structure prices the evaluation at zero, which suits a technical product whose buyers want to test search relevance under encryption before committing…

SaaS Shield charges by the tenant, the unit its SaaS-vendor buyers already use to measure their own business: a published Pro tier at $1,954 per month plus $25 per tenant for up to 100 tenants, with Cloaked Search and Cloaked AI available as per-tenant add-ons. Cloaked AI also sells standalone at $1,478 per month with limits set by users and projects rather than tenants. The published Pro tiers give buyers a transparent entry point, while larger and enterprise deployments move through negotiated procurement.

Cloaked AI runs a dual-license model: free under AGPL and for non-production use, paid for commercial closed-source deployment. That structure prices the evaluation at zero, which suits a technical product whose buyers want to test search relevance under encryption before committing.

Product Delivery & Operations Delivery keeps the data plane in the customer's hands…

Delivery keeps the data plane in the customer's hands. The SDKs compile into the customer's application, Cloaked Search runs as a proxy in front of the customer's search cluster, and Cloaked AI can run in a standalone mode with no IronCore service involved. SaaS Shield adds two components: the customer-deployed Tenant Security Proxy, which brokers operations against each tenant's KMS, and the IronCore-hosted Configuration Broker, a web app that distributes end-to-end encrypted tenant configuration.

This architecture means IronCore itself holds little or none of the protected data, which simplifies its own security story but puts the operational burden of deployment on the customer's engineers. The documentation invests heavily in that burden, with comparison tables, decision trees, and per-language guides.

Earning Customers' Trust The trust posture is coherent with the product pitch…

The trust posture is coherent with the product pitch. The trust center states SOC 2 certification, rewards bug hunters, and publishes security advisories. The deeper trust argument is architectural: the SDK source is public, the core algorithm is published peer-reviewed research, and the documentation names its own security tradeoffs rather than claiming unbreakable protection.

The company also documents its intellectual property in the open, listing granted patents on its transform-encryption and secured-search techniques. For buyers evaluating a small vendor, the inspectability helps compensate for the limited enterprise reference evidence it displays publicly.

Platform Strategy & Ecosystem Positioning IronCore positions itself as the encryption layer for other vendors' platforms rather than a platform of its own. Cloaked AI is database-agnostic across Pinecone, Qdrant, Weaviate, Chroma, OpenSearch, Elasticsearch, pgvector, Milvus, LanceDB, and Redis, and Cloaked Search rides the Elasticsearch and OpenSearch ecosystems as a transparent proxy. A Thales Verified Partner badge on the SaaS Shield page signals key-management interoperability with a major encryption incumbent. Riding other vendors' ecosystems cuts both ways. Compatibility breadth is the adoption story, but every storage vendor IronCore integrates with could add native encryption features, and the AGPL SDK plus the published algorithm lower the engineering barrier for them to do so…

IronCore positions itself as the encryption layer for other vendors' platforms rather than a platform of its own. Cloaked AI is database-agnostic across Pinecone, Qdrant, Weaviate, Chroma, OpenSearch, Elasticsearch, pgvector, Milvus, LanceDB, and Redis, and Cloaked Search rides the Elasticsearch and OpenSearch ecosystems as a transparent proxy. A Thales Verified Partner badge on the SaaS Shield page signals key-management interoperability with a major encryption incumbent.

Riding other vendors' ecosystems cuts both ways. Compatibility breadth is the adoption story, but every storage vendor IronCore integrates with could add native encryption features, and the AGPL SDK plus the published algorithm lower the engineering barrier for them to do so.

Team & Execution Capability The founders' backgrounds are technical and verifiable…

The founders' backgrounds are technical and verifiable. Patrick Walsh, CEO and co-founder, and Robert Wall, co-founder and CTO, appear as executive officers in the company's first SEC Form D. Wall served as chief architect of Oracle Service Cloud, a multi-tenant customer-experience platform, a background that maps directly to SaaS Shield's per-tenant encryption problem, and Walsh is a named inventor on multiple cryptography patents.

The public record shows no prior exits and no disclosed executive hires beyond the founders, and Walsh still fronts the company's announcements and launches. For a company at this stage of capital, a founder-led public voice is proportionate, though the cited record does not show who owns selling.

Sources

Company Detail Sources (4)
Id Source Tier Accessed
f1 IronCore Labs: App-layer encryption for sensitive data and AI official 2026-07-03
f2 SEC EDGAR: IronCore Labs, Inc. Form D (filed January 2017) regulatory 2026-07-03
f3 SEC EDGAR: IronCore Labs, Inc. Form D (filed April 2024) regulatory 2026-07-03
f4 AI Defense Matrix Catalog mapping other 2026-07-03
Profile Analysis Sources (26)
Id Source Tier Accessed
s1 IronCore Labs: homepage (HubSpot CISO testimonial)
“Cloaked AI is database-agnostic and already works with Pinecone, Qdrant, Weaviate, Chroma, OpenSearch, Elasticsearch, pgvector, Milvus, LanceDB, Redis, and more.”
official 2026-07-03
s2 IronCore Labs: Cloaked AI product page (customer logo wall shows HubSpot and Broadcom)
“Unleash generative AI projects that use private data by protecting sensitive vector embeddings with searchable data-in-use encryption.”
official 2026-07-03
s3 IronCore Labs: SaaS Shield product page (Thales Verified Partner badge, Broadcom customer testimonial)
“Add application-layer encryption, data controls, and data transparency to your cloud app.”
official 2026-07-03
s4 IronCore Labs: Cloaked Search product page
“Sensitive data stored in Elasticsearch and OpenSearch is vulnerable to hackers. Secure it with searchable, drop-in, application-layer encryption.”
official 2026-07-03
s5 IronCore Labs: Data Control Platform product page
“Developer tools to control access to your data with encryption to build minimal trust, zero-trust, and end-to-end encrypted applications.”
official 2026-07-03
s6 IronCore Labs blog: Announcing VectorLens (June 29, 2026)
“VectorLens is a command-line tool built for security teams, privacy and GRC folks, and the developers who actually own these pipelines.”
official 2026-07-03
s7 IronCore Labs: developer documentation portal
“Use SaaS Shield with the IronCore Alloy SDK, the Tenant Security Proxy, and the Configuration Broker.”
official 2026-07-03
s8 IronCore docs: Cloaked AI How It Works (notes the security-usability tradeoff of property-preserving encryption)
“The encryption technique used in Cloaked AI is based on a paper Approximate Distance-Comparison-Preserving Symmetric Encryption by Georg Fuchsbauer, Riddhi Ghosal, Nathan Hauke, & Adam O’Neill”
official 2026-07-03
s9 IronCore docs: Embedding Attacks
“Embedding inversion attack, decodes embeddings back into their source data (approximately)”
official 2026-07-03
s10 IronCore Labs: Trust Center (SOC 2)
“That’s why we are SOC 2 certified.”
official 2026-07-03
s11 IronCore Labs: SaaS Shield pricing (Pro tier $1,954 per month)
“Pro $1,954 /mo Plus $25 per tenant for up to 100 tenants”
official 2026-07-03
s12 IronCore Labs: Cloaked AI pricing
“Free to try (non-production uses) or for use in code bases that are open source and AGPL-compatible.”
official 2026-07-03
s13 IronCore Labs blog: IronCore Named a 'Cool Vendor in Data Security' by Gartner (September 2, 2025, byline Patrick Walsh)
“We’re honored to announce that Gartner has recognized IronCore in its latest report, Gartner Cool Vendors in Data Security 2025: Securing Your Data in the Age of GenAI and Quantum Computing.”
official 2026-07-03
s14 Gartner: Cool Vendors in Data Security 2025: Securing Your Data in the Age of GenAI and Quantum Computing (abstract page, vendor names gated)
“Published: 25 August 2025”
research 2026-07-03
s15 SEC EDGAR: IronCore Labs, Inc. Form D (filed April 2024)
“Total Offering Amount $ 500,000 USD or Indefinite Total Amount Sold $ 500,000 USD”
regulatory 2026-07-03
s16 SEC EDGAR: IronCore Labs, Inc. Form D (filed January 2017, $1,500,000 offering, listing Patrick Walsh and Robert Wall as executive officers)
“Within Last Five Years (Specify Year) 2015”
regulatory 2026-07-03
s17 Help Net Security: IronCore Labs Cloaked AI protects vector embeddings (November 17, 2023)
“IronCore Labs launched Cloaked AI, an SDK that protects vector embeddings with data-in-use encryption.”
press 2026-07-03
s18 Springer: Approximate Distance-Comparison-Preserving Symmetric Encryption, SCN 2022 conference proceedings
“First Online: 05 September 2022”
research 2026-07-03
s19 arXiv: Transferable Embedding Inversion Attack: Uncovering Privacy Risks in Text Embeddings without Model Queries (accepted at ACL 2024)
“revealing the potential privacy vulnerabilities in embedding technologies and emphasizing the need for enhanced security measures”
research 2026-07-03
s20 Silicon Flatirons: Patrick Walsh, IronCore Labs, Co-founder and CEO
“He’s a named inventor in multiple patents on novel cryptography and a long-time advocate for privacy and security.”
research 2026-07-03
s21 GitHub: IronCoreLabs/ironcore-alloy (AGPL-3.0 license, active repository)
“A unified SDK for IronCore encryption operations including vector encryption for AI data”
official 2026-07-03
s22 IronCore Labs: Intellectual Property (granted patents including Secured search for ready-made search software)
“IronCore Labs has obtained the following patent protections for our innovations in encryption technology, Orthogonal Access Control for Groups via Multi-Hop Transform Encryption”
official 2026-07-03
s23 The Org: Bob Wall, Co-Founder and CTO at IronCore Labs (bio behind a free-account login wall, quote verified via the page's search-engine cache)
“Bob then moved to Oracle, where they served as the chief architect for the Oracle Service Cloud, a multitenant SaaS Customer Experience application.”
other 2026-07-17
s24 SEC EDGAR: IronCore Labs, Inc. filing list showing four Form D filings (2017-01-30, 2018-06-28, 2021-04-08, 2024-04-24) regulatory 2026-07-03
s25 SEC EDGAR: IronCore Labs, Inc. Form D (filed June 2018)
“Total Offering Amount $ 1,499,999 USD or Indefinite Total Amount Sold $ 1,499,997 USD”
regulatory 2026-07-03
s26 SEC EDGAR: IronCore Labs, Inc. Form D (filed April 2021)
“Total Offering Amount $ 2,000,000 USD or Indefinite Total Amount Sold $ 1,566,000 USD”
regulatory 2026-07-03
Deep-Dive Sources (26)
Id Source Tier Accessed
s1 IronCore Labs: homepage (HubSpot CISO testimonial)
“Cloaked AI is database-agnostic and already works with Pinecone, Qdrant, Weaviate, Chroma, OpenSearch, Elasticsearch, pgvector, Milvus, LanceDB, Redis, and more.”
official 2026-07-03
s2 IronCore Labs: Cloaked AI product page (customer logo wall shows HubSpot and Broadcom)
“Unleash generative AI projects that use private data by protecting sensitive vector embeddings with searchable data-in-use encryption.”
official 2026-07-03
s3 IronCore Labs: SaaS Shield product page (Thales Verified Partner badge, Broadcom customer testimonial)
“Add application-layer encryption, data controls, and data transparency to your cloud app.”
official 2026-07-03
s4 IronCore Labs: Cloaked Search product page
“Sensitive data stored in Elasticsearch and OpenSearch is vulnerable to hackers. Secure it with searchable, drop-in, application-layer encryption.”
official 2026-07-03
s5 IronCore Labs: Data Control Platform product page
“Developer tools to control access to your data with encryption to build minimal trust, zero-trust, and end-to-end encrypted applications.”
official 2026-07-03
s6 IronCore Labs blog: Announcing VectorLens (June 29, 2026)
“VectorLens is a command-line tool built for security teams, privacy and GRC folks, and the developers who actually own these pipelines.”
official 2026-07-03
s7 IronCore Labs: developer documentation portal
“Use SaaS Shield with the IronCore Alloy SDK, the Tenant Security Proxy, and the Configuration Broker.”
official 2026-07-03
s8 IronCore docs: Cloaked AI How It Works (notes the security-usability tradeoff of property-preserving encryption)
“The encryption technique used in Cloaked AI is based on a paper Approximate Distance-Comparison-Preserving Symmetric Encryption by Georg Fuchsbauer, Riddhi Ghosal, Nathan Hauke, & Adam O’Neill”
official 2026-07-03
s9 IronCore docs: Embedding Attacks
“Embedding inversion attack, decodes embeddings back into their source data (approximately)”
official 2026-07-03
s10 IronCore Labs: Trust Center (SOC 2)
“That’s why we are SOC 2 certified.”
official 2026-07-03
s11 IronCore Labs: SaaS Shield pricing (Pro tier $1,954 per month)
“Pro $1,954 /mo Plus $25 per tenant for up to 100 tenants”
official 2026-07-03
s12 IronCore Labs: Cloaked AI pricing (free AGPL tier and Pro Standalone)
“Free to try (non-production uses) or for use in code bases that are open source and AGPL-compatible. Pro Standalone $1,478 /mo Manage your own keys and lifecycles for up to 1 million users and two products / projects / apps.”
official 2026-07-17
s13 IronCore Labs blog: IronCore Named a 'Cool Vendor in Data Security' by Gartner (September 2, 2025, byline Patrick Walsh)
“We’re honored to announce that Gartner has recognized IronCore in its latest report, Gartner Cool Vendors in Data Security 2025: Securing Your Data in the Age of GenAI and Quantum Computing.”
official 2026-07-03
s14 Gartner: Cool Vendors in Data Security 2025: Securing Your Data in the Age of GenAI and Quantum Computing (abstract page, vendor names gated)
“Published: 25 August 2025”
research 2026-07-03
s15 SEC EDGAR: IronCore Labs, Inc. Form D (filed April 2024)
“Total Offering Amount $ 500,000 USD or Indefinite Total Amount Sold $ 500,000 USD”
regulatory 2026-07-03
s16 SEC EDGAR: IronCore Labs, Inc. Form D (filed January 2017, $1,500,000 offering, listing Patrick Walsh and Robert Wall as executive officers)
“Within Last Five Years (Specify Year) 2015”
regulatory 2026-07-03
s17 Help Net Security: IronCore Labs Cloaked AI protects vector embeddings (November 17, 2023)
“IronCore Labs launched Cloaked AI, an SDK that protects vector embeddings with data-in-use encryption.”
press 2026-07-03
s18 Springer: Approximate Distance-Comparison-Preserving Symmetric Encryption, SCN 2022 conference proceedings
“First Online: 05 September 2022”
research 2026-07-03
s19 arXiv: Transferable Embedding Inversion Attack: Uncovering Privacy Risks in Text Embeddings without Model Queries (accepted at ACL 2024)
“revealing the potential privacy vulnerabilities in embedding technologies and emphasizing the need for enhanced security measures”
research 2026-07-03
s20 Silicon Flatirons: Patrick Walsh, IronCore Labs, Co-founder and CEO
“He’s a named inventor in multiple patents on novel cryptography and a long-time advocate for privacy and security.”
research 2026-07-03
s21 GitHub: IronCoreLabs/ironcore-alloy (AGPL-3.0 license, active repository)
“A unified SDK for IronCore encryption operations including vector encryption for AI data”
official 2026-07-03
s22 IronCore Labs: Intellectual Property (granted patents including Secured search for ready-made search software)
“IronCore Labs has obtained the following patent protections for our innovations in encryption technology, Orthogonal Access Control for Groups via Multi-Hop Transform Encryption”
official 2026-07-03
s23 The Org: Bob Wall, Co-Founder and CTO at IronCore Labs (bio behind a free-account login wall, quote verified via the page's search-engine cache)
“Bob then moved to Oracle, where they served as the chief architect for the Oracle Service Cloud, a multitenant SaaS Customer Experience application.”
other 2026-07-17
s24 SEC EDGAR: IronCore Labs, Inc. filing list showing four Form D filings (2017-01-30, 2018-06-28, 2021-04-08, 2024-04-24) regulatory 2026-07-03
s25 SEC EDGAR: IronCore Labs, Inc. Form D (filed June 2018)
“Total Offering Amount $ 1,499,999 USD or Indefinite Total Amount Sold $ 1,499,997 USD”
regulatory 2026-07-03
s26 SEC EDGAR: IronCore Labs, Inc. Form D (filed April 2021)
“Total Offering Amount $ 2,000,000 USD or Indefinite Total Amount Sold $ 1,566,000 USD”
regulatory 2026-07-03

Disclaimer

This content is provided "as is" with no warranties.

This site is an experimental research aid created by Zeltser Security Corp. All its data gathering and analysis was performed autonomously without human review, and it can contain errors of fact, interpretation, and judgment that a human reviewer might catch.

The analyses are statements of opinion, not statements of fact. Machine analysis produced the scores, summaries, and matrix placements by weighing the public sources each page cites, and reasonable people can weigh the same sources differently. Where a page states a fact, it cites the public source and the date it was checked, and the statement is only as accurate as that source. Unless a profile expressly says otherwise, the analysis involves no hands-on testing and no independent validation of any company's products or services.

Nothing here is professional, security, legal, financial, investment, or purchasing advice, and nothing here is a recommendation to invest in, do business with, or avoid any company. Inclusion of a company is not an endorsement, and absence of a company is not a judgment about it. Reading this site creates no advisory or client relationship. Verify any detail you plan to act on against the vendor's current materials.

The content is provided "as is" and "as available," with all warranties disclaimed, express or implied, including merchantability, fitness for a particular purpose, accuracy, and non-infringement. No entry is warranted to be complete, current, or correct. Companies change, vendors update their claims, sources can be wrong, and automated analysis can misread them.

To the fullest extent permitted by law, the operator, Zeltser Security Corp, is not liable for any damages that arise from using this site or relying on its content, including direct, indirect, incidental, special, and consequential damages and lost profits, even if advised that such damages were possible. If you are dissatisfied with the site or disagree with these terms, your remedy is to stop using it.

Entries link to vendor pages, press coverage, and other external sites that Zeltser Security Corp does not control and is not responsible for. A link is not an affiliation with the destination or an endorsement of it. Product and company names and trademarks are the property of their owners, used here nominatively to identify the companies described. Short quotations from cited sources appear for identification and commentary.

Use, quotation, automated retrieval, and redistribution of the content are governed by the Terms of Use at cybercompanyprofiles.com/terms, which permit personal and internal business use with attribution and prohibit republication and resale.