20 minutes. Your stack. Your questions.
We don't run sales theater. The first call is always with a Defog engineer who has shipped what you'd be deploying.
Pilot to procurement path
20-minute demo → 30-day trial → seat pricing to accelerate procurement cycles.
Structured event taxonomy
Standardized event types for easy correlation and faster incident response.
Policy as code
YAML policies, prebuilt packs, and delta previews make governance auditable and repeatable.
Be ready to describe your wish list
- 01
Tell us your stack
EDR, SIEM, IDP, gateway. We'll have your dashboards prebuilt before the call.
- 02
We show you yours
Live: AI traffic from your seed users (with consent). Real PII attempts caught. Real agent trust signals.
- 03
You choose pace
Most teams pilot 200 seats in week 1, expand to 2,000 in week 4. No forced timelines.
Bring specifics to the call
Identified five seed users
We both will sign NDAs in advance. Volunteer pilot users (often the security team itself). We’ll have detection running on their workstations within 4 hours.
Your SIEM endpoint
HEC URL or equivalent. We send a synthetic event during the call so you watch it land in Splunk / Sentinel / Datadog live.
Your top three concerns
Source-code leakage? Customer PII? Executive deepfakes? We’ll structure the demo around what keeps your CISO up at night.
Procurement preferences
Marketplace? Reseller? Direct? Tell us up front so legal and finance can pre-stage paperwork.
On our side: a security engineer + a customer engineer.
No sales reps or commitments for the first call.
On your side: bring the people who’ll deploy and tune the platform. Architects, SOC leads, IAM owners. Compliance can join the second call once the technical fit is established.
Join the early-access list
Pick a slot.
We'll send a calendar link within an hour during business hours, next morning otherwise.