MintMCP

Security for AI Identity AccessGovernance Risk Compliance also known as Lutra AI, Dependable AI, Inc.

Market readinessHow well the company can compete in its security market, scored across eight dimensions against public evidence. Emerging: Market readiness of 24 or below. Below the typical band, where few analyzed companies sit.
DefensibilityHow well the company holds its position if competitors catch up on features, scored across seven dimensions against public evidence. Contested: Defensibility of 13 to 14, the typical band, where a moat exists but is under pressure.
Founded 2023
Funding $3.8M
Last updated 2026-09-11

All analysis was generated autonomously, without human review. Scores are analytical opinions drawn from the cited public sources, without hands-on testing. They are not audits, certifications, investment reports, purchasing advice, or evaluations of quality.

Executive Summary

MintMCP sells enterprises two gateways that control what their AI agents can reach. Its MCP Gateway adds role-based access and an audit log to connections from AI applications such as Claude and Cursor to company systems over MCP, an open standard. Its Agent Gateway issues each agent its own identity, permissions, and audit trail. Founded in 2023, it raised a $3.8 million seed round that included Coatue. Coursera is its named customer, with about 2,000 employees on MintMCP and more than 70 MCP connections. MintMCP says Coursera and Persona reviewed and trusted it, and has completed a SOC 2 Type II audit. A departing customer may need to recreate the roles, credentials, and connections it set up. A data or identity vendor could add the same control to a suite its customers already license.

Sourced Details

Description Agent governance platform whose MCP gateway fronts thousands of MCP servers with SSO, OIDC, role-based access, guardrails, and an audit trail, and whose agent gateway issues each AI agent its own identity and scoped credentials. [f1]
Founded 2023 [f2]
HQ Mountain View, California, United States [f2]
Funding $3.8M total [f2]
Latest funding 3.8 million dollar seed round (2023). Backers Coatue, Hustle Fund, Maven Ventures, WVV Capital, plus angel investors. [f3]

Products

Product What it does
MintMCP Gateway Centralized MCP gateway that authenticates AI clients to MCP servers, enforces SSO, OIDC, and role-based access policies, applies guardrails, and logs every tool call for audit and observability.
Agent Gateway Gateway that gives each AI agent its own identity and token, delegates only the credentials it needs per connection, and stamps every tool call and auth event in a central audit log.
Agent Monitor The Agent Gateway's observability view: tracks MCP calls, bash commands, and file access from coding agents in real time and enforces guardrails that block risky operations before they run.

Matrix Coverage

AI Defense Matrix

GovernIdentifyProtectDetectRespondRecover
AI-Workload Platforms Inference servers, training platforms, vector DB platforms, and the model-loading supply chain.
AI Orchestration Tools Agentic orchestration tools, plus their plugins, skills, hooks, system prompts, scaffolding, harnesses, configuration settings, and MCP clients on user devices.
AI-Generated Code Code produced by AI tools, AI-assisted reviews, AI-generated infrastructure-as-code and tests, and vibe-coded apps that bypass CI/CD.
AI Gateways & Routers MCP proxies and gateways, LLM routers, outbound AI-service traffic, shadow AI egress, and model-registry traffic.
AI Model Model weights, fine-tuning checkpoints, model cards, registries, AIBOM, and the third-party LLMs your enterprise consumes.
Training Data Datasets used for training, fine-tuning, and continued learning.
Runtime AI Data User prompts, inference inputs, RAG content, vector DB content, persistent agent memory, and interaction history.
AI Agent Identities AI agents as non-human principals, plus credentials, keys, permission scopes, service accounts, and delegation chains across agents and tools.

The MintMCP Gateway provides security for AI and is mapped to the AI Defense Matrix. [f4]

Market Readiness

How well the company can compete in its security market, scored across eight dimensions against public evidence.

Emerging 24 /40 Emerging: Market readiness of 24 or below. Below the typical band, where few analyzed companies sit.
Dimension Score Rationale
Problem Clarity How precisely the company defines its problem, with evidence the problem exists at the scale claimed. 3/5 The agent-access blind spot is a vendor-stated problem described qualitatively, and the grounded corroboration is the category signal of Natoma joining forces with Snowflake rather than an independent measure of buyer pain. [s1, s4]
Capability Depth How specific the technical capabilities are, with evidence beyond marketing claims such as docs and third-party validation. 3/5 The gateway documents one-click STDIO-to-managed conversion, SSO and OIDC, role-based access, guardrails, audit logging, and an LLM proxy over thousands of MCP servers. The external validation point is that MintMCP presents itself as an official partner, which EveryDev describes as an official Cursor partner, rather than published deployment metrics or a third-party technical evaluation. [s2, s5, s1]
Market Timing Whether the market is ready for this product, with evidence that buyers are actively seeking solutions. 4/5 The enabler is the 2024 to 2025 spread of MCP as the agent-to-tool standard, which created the ungoverned tool-access surface MintMCP fronts. Buyer-side demand for governed MCP is independently visible in Natoma joining forces with Snowflake and in analyst coverage of the gateway gap. [s4, s7]
Team Credibility Demonstrated domain expertise with public signals such as prior exits, publications, and industry recognition. 3/5 Founders Jiquan Ngiam and Vijay Vasudevan are early Google Brain members who helped build TensorFlow and Coursera, a verifiable AI-research pedigree. That standing is adjacent rather than in the enterprise-security or identity-governance domain the product sells into. [s3, s8]
GTM Proof Evidence of actual traction (customers, revenue signals, partnerships) beyond stated intentions. 3/5 MintMCP names reference accounts through its SafeBase trust center, which lists Coursera and Persona as reviewed and trusted. It presents itself as an official partner, and EveryDev describes it as an official Cursor partner. With those named accounts and an unusual backer roster of Coatue plus Andrej Karpathy and Jeff Dean, the evidence names a customer, though the disclosed roster stays short of deeper deployment proof. [s6, s1, s5, s3, s8]
Funding Efficiency Whether funding matches go-to-market ambition, with signs of capital-efficient growth. 3/5 Lutra AI, MintMCP's parent, was established in 2023 and has raised about 3.8 million dollars per third-party profiles, and it shipped the gateway with SSO, RBAC, guardrails, audit, and a SOC 2 Type II audit by its February 2026 launch, visible output for the raise. Output per dollar against an enterprise go-to-market motion is not yet confirmable. [s5, s4, s9, s10]
Category Clarity Whether the company creates or fits a recognizable category that buyers can quickly place in their stack. 3/5 MCP gateway governance is a category that emerged across 2024 and 2025 and still needs MCP explained to buyers, so despite the Natoma and Snowflake validation it reads as forming rather than an established slot placed without coaching. [s1, s4, s7]
Incumbent Defensibility How vulnerable the core value proposition is to absorption as a feature by a platform vendor. 2/5 MCP tool gating is the exact inline cell a data or identity platform absorbs, the logic Snowflake acted on as Natoma joins forces with it rather than competing. No proprietary data flywheel or compliance position appears that bundling would not replicate, so the capability reads as a plausible platform feature. [s4, s7, s2]
Business Risks A data or identity platform could fold MCP tool gating into a suite the buyer already licenses, the move Snowflake made as Natoma joins forces with it rather than building…
  • A data or identity platform could fold MCP tool gating into a suite the buyer already licenses, the move Snowflake made as Natoma joins forces with it rather than building.
  • MintMCP discloses only a few named accounts, so the gap between its investor signal and broader disclosed traction could persist into the buying cycle.
  • Anthropic, OpenAI, or the MCP maintainers could ship native governance inside agent toolkits, eroding the standalone gateway's reason to exist.
  • The founders' AI-research pedigree may not carry the enterprise-security and identity-governance procurement trust the CISO buyer demands.
  • Pricing tied to active agent users and usage could expose customers to rising cost as agent activity grows, slowing expansion.
Problem & Market MintMCP targets the enterprise security team standing up AI agents at scale…

MintMCP targets the enterprise security team standing up AI agents at scale. The buyer is the organization where employees are rolling out Claude, Cursor, Copilot, and custom agents that connect to Slack, Jira, Snowflake, GitHub, and internal databases, and where security has no record of what those agents reach for. The company frames the gap plainly, that agents operate with elevated privileges while most organizations have no visibility into what they are doing.

The pain is sharpened by how MCP works. The Model Context Protocol lets an agent reach any connected tool, so a single agent can expose credentials or move sensitive data, and the exposure surfaces only during an audit. MintMCP positions itself as the control point that authenticates clients, enforces who can reach which server, and records every tool call, which is the visibility a security review demands before agents touch production.

The category has market validation even though the specific buyer pain is vendor-stated. MintMCP frames the blind spot in its own launch, while the broader market validated the governed-gateway category when Natoma, a near-identical governed MCP gateway, said it is joining forces with Snowflake to extend governance from stored data to live agent actions. [s1, s4, s7]

Product Capabilities The MintMCP Gateway sits between AI clients and thousands of MCP servers as a single managed control point…

The MintMCP Gateway sits between AI clients and thousands of MCP servers as a single managed control point. It adds single sign-on and OIDC authentication, role-based access control, configurable guardrails, and an audit trail over every tool call, and it offers a one-click path to convert a local STDIO-based MCP server into a hosted, governed one. The product also runs an LLM proxy and real-time monitoring, with self-hosted deployment available.

The documented capability surface is concrete for an emerging category, spanning authentication, authorization, policy, and observability rather than a single feature. What the public record lacks is an external technical validation point on the order of published deployment metrics or a third-party evaluation. MintMCP presents itself as an official partner, and EveryDev describes it as an official Cursor partner, which is the strongest outside signal.

What holds up is the gateway position rather than a model or data advantage. The connectors, access policies, and audit pipeline are engineering a funded rival could rebuild from the same MCP standard, so the capability claim rests on owning the access path agents traverse, not on a proprietary corpus or model. [s2, s5, s1]

Competitive Positioning MintMCP competes directly in the governed MCP gateway lane, where the closest comparison is Natoma, a near-identical product that says it is joining forces with Snowflake in 2026…

MintMCP competes directly in the governed MCP gateway lane, where the closest comparison is Natoma, a near-identical product that says it is joining forces with Snowflake in 2026. That deal frames the competitive logic, that platform owners view this inline layer as theirs to absorb, which is both validation that the category matters and a warning about who ends up owning it.

The broader field includes non-human and agent identity vendors and AI-agent governance platforms contesting the same authorization and discovery layers. MintMCP differentiates on breadth of hosted MCP coverage and a fast one-click onboarding path for any STDIO server, paired with a developer-friendly free trial that needs no sales call.

The exposure is structural rather than feature-level. A vendor that already holds the enterprise's data or identity is positioned to ship native MCP governance inside a suite the buyer already licenses, and the model and tool makers could embed the same controls in their agent toolkits, which would press a standalone gateway from both sides. [s7, s4, s1]

Go-to-Market & Traction MintMCP runs a self-serve, developer-led motion…

MintMCP runs a self-serve, developer-led motion. The homepage routes visitors to a free trial with no sales call required, and the company offers self-hosted deployment, with usage-based, per-active-user pricing described in a third-party developer-tools profile and quoted through a custom enterprise quote. The motion is to land with a developer or platform team and expand into a security-governed enterprise deployment.

Named demand is improving but still thin. The SafeBase trust center lists Coursera and Persona as reviewed and trusted, so the record now names a couple of accounts. MintMCP presents itself as an official partner, and EveryDev describes it as an official Cursor partner. The broader disclosed roster stays short, and the public evidence of pull still leans upstream, toward investors, as much as downstream, toward customers.

The backer roster is the unusual signal, and it speaks to investor conviction rather than customer traction. Coatue, Hustle Fund, Maven Ventures, and WVV Capital invested alongside the AI researchers Andrej Karpathy and Jeff Dean and the executive Scott Belsky, which lends credibility to the thesis. That investor signal stands apart from the thin list of named customer accounts, which remains the real measure of pull. [s1, s6, s5, s3, s8]

Team & Credibility MintMCP is built by Lutra AI, whose founders are early members of Google Brain who helped build TensorFlow and Coursera…

MintMCP is built by Lutra AI, whose founders are early members of Google Brain who helped build TensorFlow and Coursera. Jiquan Ngiam and Vijay Vasudevan carry verifiable AI-research and large-scale engineering track records from Google and Coursera, a pedigree few teams in the category can match on the AI-infrastructure side.

That strength is adjacent to the sale. The buyer is a CISO and an enterprise security organization running a procurement gauntlet, and the founders' public record is in AI research and consumer-scale machine learning rather than enterprise security, identity governance, or privileged access.

The funding and advisor signals reinforce a credible but research-weighted team. The AI-pioneer backers who joined the round believe in the enterprise AI-infrastructure thesis, and the open question the public record does not resolve is the depth of enterprise-security and go-to-market experience below the founders. [s3, s4, s8]

Trust Readiness MintMCP presents enterprise-grade trust collateral for a young company…

MintMCP presents enterprise-grade trust collateral for a young company. The About page and the launch state that the platform is SOC 2 Type II audited, with continuous compliance monitoring via Drata, and the company offers HIPAA documentation and signs business associate agreements for customers handling protected health information. A SafeBase-hosted trust center lists controls and subprocessors.

That collateral matters because the gateway sits directly in the path of agent access to sensitive systems, handling credentials, policy, and a record of every action. A security buyer weighs the SOC 2 Type II attestation alongside the SSO, role-based access, PII detection, and audit trail the platform builds in, and the HIPAA posture widens the set of regulated buyers that can evaluate it.

The attestations are table-stakes rather than a moat. A completed SOC 2 Type II audit and a HIPAA posture ease procurement without blocking a substitute, and no regime mandates a governed MCP gateway as a product class, so the trust surface helps close deals but does not by itself defend the position. [s3, s4, s6]

Competitors Natoma, Zenity, Astrix Security…
Company Relationship Note Compare
Natoma competes with Governed MCP gateway that enforces identity-aware authorization and audit over agent tool access, the near-identical product joining forces with Snowflake.
Zenity competes with Governs AI agents and their tool access for the enterprise, contesting the authorization and monitoring layers MintMCP sells.
Astrix Security competes with Secures non-human and agent identities and their access, overlapping MintMCP's role-based control over what agents can reach.

Add analyzed competitors to compare them side by side with MintMCP.

Strategy Deep Dive

A closer look at the company's product strategy, measuring how defensible it is against market forces and examining the eight areas behind it.

Defensibility

Contested 13 /21 Contested: Defensibility of 13 to 14, the typical band, where a moat exists but is under pressure. reinforce or reposition

A rival can copy what MintMCP built and still has to pry it out of the accounts running it. Two gateways divide the job: one governs how AI agents reach company tools, the other gives each agent its own credentials and audit trail. Both rest on an open protocol a funded competitor can implement, no proprietary dataset appears in public sources, and the SOC 2 and HIPAA paperwork eases procurement without blocking a substitute. Depth is the friction that remains. MintMCP's own Coursera account describes roughly 2,000 employees and more than 70 connections routed through tool bundles, and public sources do not size what unwinding that would cost. A data or identity platform can also fold this job into a suite it already sells, as the Natoma and Snowflake announcement suggests.

Dimension Score Rationale
Value Delivery Does the product sell software as the product, or judgment, trust, or accountability with software as the delivery mechanism. 1/3 MintMCP ships software the customer configures and consumes, hosted or self-hosted, through self-serve and quoted plans, and the cited pages describe dedicated support but no analyst-led managed service behind the outcome, so delivery sits at the software level.
Switching Cost How expensive leaving is for a customer: data portability, integrations, learned workflows, network effects, regulatory data residency. 2/3 Leaving would require recreating the roles, policies, credentials, and integrations loaded into the gateways, against a published deployment of roughly 2,000 employees and more than 70 connections, though public sources do not size that effort and describe no network effect or residency requirement.
Compliance Moat Whether certifications, liability acceptance, or audit trails block an easy replacement. 1/3 MintMCP holds a commercial SOC 2 Type II audit, a HIPAA posture, and a CASA Tier 2 listing, assurance that eases procurement without blocking a substitute, and no cited source identifies a mandate for the product class.
Problem Complexity Whether the product requires ML, optimization, real-time systems, or years of specialized expertise. 3/3 Authenticating clients, authorizing and routing agent tool calls across thousands of MCP servers, and issuing per-agent delegated credentials with SSO, role-based access, guardrails, and audit is security-critical distributed-systems engineering where failure breaks production agent access.
Buyer Profile Whether buyers are SMB operators, mid-market IT teams, or regulated enterprises and governments with procurement gates. 2/3 The named buyer is the enterprise security or platform team, and the quote form solicits team sizes from 1 to 100 through 10,000 and above against a published 2,000-employee deployment, which blends the profile rather than gating on regulated procurement.
Layer Whether the product is an end-user application, a platform with application features, or infrastructure other applications depend on. 3/3 MintMCP is the path agents authenticate and route through to reach company tools, enforcing policy in line rather than observing from the side, with the coding-agent case handled through hooks that inspect the same calls.
Proprietary Data, Content, or IP Whether the product accumulates datasets, content licenses, or IP that a rival cannot recreate from scratch. 1/3 The hosted MCP catalog, role policies, and per-customer audit trails are tenant-specific configuration and engineering rather than a named non-public corpus, so a funded rival could rebuild both gateways from the same open protocol.
Strategic Market Segmentation MintMCP sells to the security or platform team that has to govern AI agents the rest of the company already adopted…

MintMCP sells to the security or platform team that has to govern AI agents the rest of the company already adopted. The buyer runs Claude, Cursor, Copilot, and custom agents against Slack, GitHub, Jira, Snowflake, and internal databases, and cannot see or limit what those agents reach. MintMCP answers that with two gateways: one that governs how agents connect to company tools, and one that gives each agent its own identity rather than a borrowed employee credential.

The motion blends self-serve entry with an enterprise close. A developer starts a free trial with no sales call, and the governed deployment with SSO, role-based access, and self-hosting arrives through a custom quote. That path fits an organization where adoption ran ahead of controls, which is the condition the buyer is trying to correct.

The named footprint has grown past a shortlist. MintMCP publishes customer stories from Coursera, Deerfield Group, Flashfood, and Workstream, and its trust center still lists Coursera and Persona as reviewed and trusted, so the enterprise claim now rests on published accounts rather than positioning alone.

Product Capabilities & AI Advantages MintMCP's claimed advantage is holding the connection between an agent and the tools it calls…

MintMCP's claimed advantage is holding the connection between an agent and the tools it calls. The MCP Gateway hosts and registers MCP servers, groups them into virtual servers scoped by role, puts OAuth, SAML, and SSO in front of each connection, and logs every interaction while scanning for personal data and leaked secrets. The Agent Gateway issues each agent its own token and delegates only the credentials that agent needs, with Agent Monitor as its observability view over tool calls, shell commands, and file access.

The capability surface is concrete, and the enforcement point is not uniform. For coding tools MintMCP also integrates through Cursor hooks, which inspect MCP calls in place rather than routing all traffic through the gateway, so how much sits in the path depends on which client the customer runs.

What the record does not show is a model or data advantage. The connectors, access policies, and audit pipeline are engineering a funded rival could rebuild from the same open protocol, and no proprietary model or named non-public dataset appears in fetched sources. Audit trails and policy configurations read as tenant-specific, so the position in the connection path, not accumulated data, is the asset.

Sales Engagement & Go-to-Market MintMCP opens with self-serve and closes with sales…

MintMCP opens with self-serve and closes with sales. A free trial needs no sales call, pricing arrives as a custom quote built on per-active-user licensing plus platform fees that scale with usage and team size, and self-hosted deployment is available for buyers whose security posture requires it.

Named demand now spans several kinds of evidence. MintMCP publishes four customer stories, its Coursera account reports roughly 2,000 employees and more than 70 MCP connections, and its trust center lists Coursera and Persona as reviewed and trusted. Outside its own pages, SiliconANGLE places MintMCP among the gateway providers in Okta's Cross App Access ecosystem, and Cursor names it as a hooks partner for MCP governance, so distribution partners as well as customers carry the story.

The backer roster remains the loudest signal, and it speaks to investor conviction rather than revenue. Coatue Ventures, Hustle Fund, Maven Ventures, and WVV Capital funded the seed round alongside angel investors including Andrej Karpathy, Jeff Dean, and Scott Belsky. Rival gateway Natoma has announced it is joining forces with Snowflake, which shows a platform owner reaching for this layer while MintMCP is still building its own account list.

Pricing Model MintMCP prices through a custom quote rather than a published rate card…

MintMCP prices through a custom quote rather than a published rate card. The meter is per-user licensing based on active AI agent users, with platform fees that scale with usage and team size, enterprise service levels and dedicated support on request, and a free trial for entering without a sales conversation.

The metering choice shows what MintMCP believes the buyer pays for. Tying cost to active agent users blends a seat-like meter with fees that grow as the customer pushes more agent activity through the gateway, which lines revenue up with the position the product holds.

The tradeoff is exposure to a bill that rises with adoption, which can slow the very expansion the product is sold to enable. The open question is whether the cost of running more agents stays predictable enough for an enterprise to standardize on it.

Product Delivery & Operations MintMCP is delivered as software the customer configures, hosted by MintMCP with a self-hosted option, rather than a staffed service…

MintMCP is delivered as software the customer configures, hosted by MintMCP with a self-hosted option, rather than a staffed service. The buyer sets the policy, defines the roles, and reads the audit trail. The cited pages describe dedicated support options but no analyst-led managed service standing behind the outcome.

The connection role raises the operational stakes. When agent traffic routes through the gateway, MintMCP becomes a dependency in the access path, so its availability and latency decide whether agents can act. The dependency is not identical everywhere: the Coursera account describes coding tools integrating through hooks that expose tool activity for validation instead of routing all traffic through the gateway.

That dependency is also what a departing customer would have to unwind. The same placement that creates operational risk is what a customer would have to re-plumb to leave, and public sources do not document a migration or size the effort, so the delivery model and the switching-cost case are two readings of one architecture.

Earning Customers' Trust MintMCP presents enterprise-grade trust collateral for a company this young…

MintMCP presents enterprise-grade trust collateral for a company this young. It is SOC 2 Type II audited with continuous compliance monitoring via Drata, makes HIPAA documentation available on request and signs business associate agreements, and runs a SafeBase trust center whose compliance shelf also lists CASA Tier 2 and an application penetration test. SSO, role-based access, personal-data detection, and audit trails are built into the platform, and Help Net Security reports data encryption in transit and at rest, data residency options, and enterprise service levels.

That collateral matters because the gateway handles credentials, policy, and the record of every action an agent takes against sensitive systems. A security buyer weighs the attestation and the HIPAA posture alongside the audit trail during a formal review, and the HIPAA documentation widens the set of regulated buyers that can evaluate the product at all.

The attestations remain assurance rather than a barrier. A completed audit and a signed agreement ease procurement without preventing a substitute, and no cited source identifies a regulation that requires a governed MCP gateway, so the trust surface helps close deals without defending the position.

Platform Strategy & Ecosystem Positioning MintMCP positions itself as the governed connection layer between AI clients and enterprise tools rather than a point control…

MintMCP positions itself as the governed connection layer between AI clients and enterprise tools rather than a point control. It standardizes how agents reach MCP servers through one gateway, works across Claude, Cursor, Copilot, and ChatGPT, and gives each agent an identity the enterprise can trace. Its ecosystem placements reinforce that framing, with SiliconANGLE listing it among the gateway providers in Okta's Cross App Access ecosystem and Cursor naming it a hooks partner.

That position is the asset, and it is also the exposure. A vendor that already holds the enterprise's data or identity is the natural owner of this layer and can fold agent tool gating into a suite the buyer already licenses. A platform owner appears to be acting on that logic, since rival gateway Natoma says it is joining forces with Snowflake, an arrangement whose structure its page does not disclose while it continues to market its own platform.

An independent gateway is pressed from two sides. The model and tool makers can embed governance inside their own agent toolkits, and the data platforms can bundle it, which is why owning this path is durable only for as long as the platforms leave it unclaimed.

Team & Execution Capability MintMCP is built by a team whose founders were early members of Google Brain and helped build TensorFlow and Coursera…

MintMCP is built by a team whose founders were early members of Google Brain and helped build TensorFlow and Coursera. That record carries verifiable AI-research and large-scale engineering weight, and it explains why the company reads the agent-infrastructure problem the way it does.

The strength sits adjacent to the sale. The buyer is an enterprise security or platform team, while the founders' documented background is AI research and machine learning, with no cited enterprise-security, identity-governance, or privileged-access history behind it.

The backers reinforce a credible but research-weighted picture. The investors who joined the seed round believe the enterprise AI-infrastructure thesis, and how much enterprise-security and go-to-market depth sits below the founders is a question fetched sources do not answer.

Sources

Company Detail Sources (4)
Id Source Tier Accessed
f1 MintMCP homepage official 2026-08-01
f2 CB Insights profile of Lutra, MintMCP's developer brand research 2026-08-01
f3 TechCrunch: Ex-Google, Coursera employees start Lutra AI to make AI workflows easier to build press 2026-08-01
f4 AI Defense Matrix Catalog mapping for MintMCP other 2026-06-21
Profile Analysis Sources (13)
Id Source Tier Accessed
s1 MintMCP homepage
“Roll out Claude & Cursor across your org with 100+ hosted MCPs, governed by role, monitored by default.”
official 2026-06-21
s2 MintMCP MCP Gateway page
“10,000+ MCP servers, made enterprise-ready. Add SSO and OIDC authentication. Monitor activity, log every action, and enforce guardrails. One-click deployment. Deploy any STDIO-based MCP server instantly with built-in hosting and management.”
official 2026-06-21
s3 MintMCP About page, founders, Why MintMCP, and Coatue plus angel backers
“Enterprise-grade: SSO, RBAC, audit trails, SOC 2, HIPAA. ... Early members of Google Brain who helped build TensorFlow and Coursera. Jiquan Ngiam, Google, Coursera. Vijay Vasudevan, Google. ... Backed by Coatue, Maven Ventures, WVV Capital, and angels Andrej Karpathy, Jeff Dean, Scott Belsky.”
official 2026-06-21
s4 Help Net Security: MintMCP's governance platform helps organizations deploy, monitor, and secure AI agents
“As enterprises race to deploy AI agents, security teams face a growing blind spot. These agents operate with elevated privileges: accessing databases, APIs, and internal systems. ... MintMCP is SOC 2 Type II audited and offers data encryption in transit and at rest.”
press 2026-06-30
s5 EveryDev profile of MintMCP and parent Lutra AI (funding, features)
“Lutra AI is based in Mountain View, CA, established in 2023, with $3.8M raised. ... MCP Gateway. LLM Proxy. OAuth & SSO. Audit logs. Real-time monitoring. High availability. ... Per-user licensing based on active AI agent users. Flexible deployment options including self-hosted.”
other 2026-06-21
s6 MintMCP Trust Center (SafeBase); names customer references and states continuous compliance monitoring via Drata
“MintMCP Trust Center | Powered by SafeBase. MintMCP is reviewed and trusted by Coursera and Persona. Subprocessors. MintMCP is SOC 2 Type II audited, with continuous compliance monitoring via Drata.”
official 2026-06-21
s7 Natoma platform page (the governed MCP gateway joining forces with Snowflake)
“Natoma serves as that platform, providing a governed MCP gateway so AI agents can operate securely across your organization. Natoma is joining forces with Snowflake.”
official 2026-06-21
s8 TechCrunch: Ex-Google, Coursera employees start Lutra AI to make AI workflows easier to build
“Lutra recently came out of stealth after closing on $3.8 million in seed funding in a round that included Coatue Ventures, Hustle Fund, Maven Ventures, WVV Capital and a group of angel investors, including Andrej Karpathy, Jeff Dean and Scott Belsky.”
press 2026-06-30
s9 The SaaS News: Lutra AI Raises 3.8 Million in Seed Round
“Lutra AI, a Mountain View, CA-based startup focusing on revolutionizing task automation with specialized assistants built on artificial intelligence (AI) workflows, recently raised $3.8 million in seed funding.”
press 2026-06-30
s10 TechTimes: Lutra AI Secures 3.8m Seed Funding for Code-First AI Workflows
“Lutra's vision and potential attracted significant attention in its recent funding round, which amassed $3.8 million.”
press 2026-06-30
s11 SiliconANGLE: Okta expands Cross App Access ecosystem to secure AI agent connections, naming Dependable AI's MintMCP among the gateway providers
“A third group covering identity infrastructure, gateways and frameworks routes and secures the traffic in between, among them Aquera Inc., Archestra.AI, Cloudflare, Keycard Labs Inc., Keycloak, Dependable AI Inc.’s MintMCP, Scalekit Inc., Stytch by Twilio Inc., WorkOS Inc. and Zuplo Inc.”
press 2026-07-03
s12 CB Insights profile of Lutra (MintMCP's parent): Seed VC stage, $3.8M total raised, and a mention in the March 2025 AI agent market map brief
“Lutra was founded in 2023. ... Lutra raised a total of $3.8M. ... CB Insights Intelligence Analysts have mentioned Lutra in 1 CB Insights research brief, most recently on Mar 6, 2025.”
research 2026-07-03
s13 OpenCorporates registry: DEPENDABLE AI, INC., Delaware corporation 7426065, California branch registration 5689943 at MintMCP's Mountain View address
“DEPENDABLE AI, INC. (Delaware (US), 7426065) ... DEPENDABLE AI, INC. (California (US), 5689943) ... 800 W EL CAMINO REAL, STE 180, MOUNTAIN VIEW, CA, 94040”
regulatory 2026-07-03
Deep-Dive Sources (19)
Id Source Tier Accessed
s1 MintMCP homepage: the two gateways and what each one governs
“The MCP Gateway scopes & audits connections across Claude, Cursor, & MCP servers. The Agent Gateway gives your agents their own least-privilege identities, permissions, & audit trails.”
official 2026-08-01
s2 MintMCP MCP Gateway page: hosting, registry, virtual servers, OAuth and SAML, audit logs, PII detection, secret scanning
“Centralized MCP server management with enterprise security, governance, and observability. Connect any AI agent to your data sources safely.”
official 2026-08-01
s3 MintMCP About page: first product, founder background, backers, and the compliance posture
“Early members of Google Brain who helped build TensorFlow and Coursera.”
official 2026-08-01
s4 MintMCP Agent Gateway page: per-agent tokens, delegated credentials, centralized audit log, SIEM export
“Agent bundles give each agent its own token, scoped permissions, and audit trail, so you can monitor or shut down a single agent without touching anything else.”
official 2026-08-01
s5 MintMCP Agent Monitor page, which states Monitor's relationship to the Agent Gateway
“Monitor is the observability view of the MintMCP Agent Gateway.”
official 2026-08-01
s6 MintMCP pricing page: quote-based, per-active-user licensing with platform fees
“Per-user licensing based on active AI agent users Platform fees scale with usage and team size Flexible deployment options including self-hosted ... How big is your team? 1 - 100 101 - 1,000 1,001 - 9,999 10,000+”
official 2026-08-01
s7 MintMCP Trust Center (SafeBase): CASA Tier 2, HIPAA, SOC 2 Type 2, penetration test, subprocessors, and named references
“MintMCP is reviewed and trusted by Coursera Persona”
official 2026-08-01
s8 MintMCP Coursera case study: deployment size, connection count, and the tool-bundle model
“Employees on MintMCP ~2,000 MCP Connections 70+ AI adoption 100%”
official 2026-08-01
s9 MintMCP customer stories index: Coursera, Deerfield Group, Flashfood, and Workstream
“Real deployments, security tradeoffs, and operating models from the teams running MCP in production.”
official 2026-08-01
s10 Help Net Security: MintMCP's governance platform helps organizations deploy, monitor, and secure AI agents
“MintMCP is SOC 2 Type II audited and offers data encryption in transit and at rest, data residency options, and enterprise SLAs.”
press 2026-08-01
s11 TechCrunch: Ex-Google, Coursera employees start Lutra AI to make AI workflows easier to build
“Lutra recently came out of stealth after closing on $3.8 million in seed funding in a round that included Coatue Ventures, Hustle Fund, Maven Ventures, WVV Capital and a group of angel investors, including Andrej Karpathy, Jeff Dean and Scott Belsky.”
press 2026-08-01
s12 The SaaS News: Lutra AI Raises 3.8 Million in Seed Round
“Lutra AI, a Mountain View, CA-based startup focusing on revolutionizing task automation with specialized assistants built on artificial intelligence (AI) workflows, recently raised $3.8 million in seed funding.”
press 2026-08-01
s13 SiliconANGLE: Okta expands Cross App Access ecosystem to secure AI agent connections, placing MintMCP among the gateway providers
“A third group covering identity infrastructure, gateways and frameworks routes and secures the traffic in between, among them Aquera Inc., Archestra.AI, Cloudflare, Keycard Labs Inc., Keycloak, Dependable AI Inc.'s MintMCP, Scalekit Inc., Stytch by Twilio Inc., WorkOS Inc. and Zuplo Inc.”
press 2026-08-01
s14 CB Insights profile of Lutra, MintMCP's developer brand: stage, total raised, and headquarters
“Founded Year 2023 Stage Seed VC | Alive Total Raised $3.8M Last Raised $3.8M”
research 2026-08-01
s15 OpenCorporates registry: DEPENDABLE AI, INC., Delaware corporation 7426065, California branch 5689943 at MintMCP's Mountain View address
“DEPENDABLE AI, INC. (Delaware (US), 7426065)”
regulatory 2026-08-01
s16 EveryDev developer-directory profile of MintMCP: features, pricing model, and deployment options
“Per-user licensing based on active AI agent users”
other 2026-08-01
s17 Natoma platform page, a near-identical governed MCP gateway now joining forces with Snowflake
“Natoma is joining forces with Snowflake ... Natoma serves as that platform, providing a governed MCP gateway so AI agents can operate securely across your organization.”
official 2026-08-01
s18 Cursor hooks partners announcement, describing how MintMCP integrates through Cursor hooks
“MintMCP uses beforeMCPExecution and afterMCPExecution hooks to build a complete inventory of MCP servers, monitor tool usage patterns, and scan responses for sensitive data before it reaches the AI model.”
other 2026-08-01
s19 Model Context Protocol official site, establishing MCP as an open-source standard
“MCP (Model Context Protocol) is an open-source standard for connecting AI applications to external systems.”
research 2026-08-01

Disclaimer

This content is provided "as is" with no warranties.

This site is an experimental research aid created by Zeltser Security Corp. All its data gathering and analysis was performed autonomously without human review, and it can contain errors of fact, interpretation, and judgment that a human reviewer might catch.

The analyses are statements of opinion, not statements of fact. Machine analysis produced the scores, summaries, and matrix placements by weighing the public sources each page cites, and reasonable people can weigh the same sources differently. Where a page states a fact, it cites the public source and the date it was checked, and the statement is only as accurate as that source. Unless a profile expressly says otherwise, the analysis involves no hands-on testing and no independent validation of any company's products or services.

Nothing here is professional, security, legal, financial, investment, or purchasing advice, and nothing here is a recommendation to invest in, do business with, or avoid any company. Inclusion of a company is not an endorsement, and absence of a company is not a judgment about it. Reading this site creates no advisory or client relationship. Verify any detail you plan to act on against the vendor's current materials.

The content is provided "as is" and "as available," with all warranties disclaimed, express or implied, including merchantability, fitness for a particular purpose, accuracy, and non-infringement. No entry is warranted to be complete, current, or correct. Companies change, vendors update their claims, sources can be wrong, and automated analysis can misread them.

To the fullest extent permitted by law, the operator, Zeltser Security Corp, is not liable for any damages that arise from using this site or relying on its content, including direct, indirect, incidental, special, and consequential damages and lost profits, even if advised that such damages were possible. If you are dissatisfied with the site or disagree with these terms, your remedy is to stop using it.

Entries link to vendor pages, press coverage, and other external sites that Zeltser Security Corp does not control and is not responsible for. A link is not an affiliation with the destination or an endorsement of it. Product and company names and trademarks are the property of their owners, used here nominatively to identify the companies described. Short quotations from cited sources appear for identification and commentary.

Use, quotation, automated retrieval, and redistribution of the content are governed by the Terms of Use at cybercompanyprofiles.com/terms, which permit personal and internal business use with attribution and prohibit republication and resale.