{"id":143427,"date":"2026-08-18T09:43:16","date_gmt":"2026-08-18T09:43:16","guid":{"rendered":"https:\/\/www.europesays.com\/ai\/143427\/"},"modified":"2026-08-18T09:43:16","modified_gmt":"2026-08-18T09:43:16","slug":"keeping-ai-agents-in-check-kyvvu-raises-e1-million","status":"publish","type":"post","link":"https:\/\/www.europesays.com\/ai\/143427\/","title":{"rendered":"Keeping AI agents in check: Kyvvu raises \u20ac1 million"},"content":{"rendered":"<p class=\"col-start-2\">Dutch startup Kyvvu <a href=\"https:\/\/www.bom.nl\/en\/articles\/kyvvu-haalt-1-miljoen-op-om-ai-agents-veilig-inzetbaar-te-maken-in-gereguleerde-sectoren\" rel=\"nofollow noopener\" target=\"_blank\">has raised \u20ac1 million<\/a> to fix a security gap that most companies deploying AI agents don&#8217;t yet realize they have: an agent can follow every rule it&#8217;s given and still cause a breach, simply by combining permitted actions in the wrong order.<\/p>\n<p class=\"col-start-2\">The pre-seed round was backed by Volta Ventures and the Brabant Development Agency (BOM). Kyvvu, based in Den Bosch, builds a security layer that sits inside AI agents and, in under a millisecond, checks whether each action they&#8217;re about to take should actually go through.<\/p>\n<p><a target=\"_blank\" rel=\"noopener noreferrer sponsored nofollow\" class=\"my-8\" href=\"https:\/\/wattmattersinai.eu\"><img alt=\"Watt Matters in AI 2026\" loading=\"lazy\" width=\"2000\" height=\"442\" decoding=\"async\" data-nimg=\"1\" class=\"rounded-lg\" style=\"color:transparent\"  src=\"https:\/\/www.europesays.com\/ai\/wp-content\/uploads\/2026\/08\/1787046196_557_image.png\"\/><\/a><\/p>\n<p class=\"col-start-2\">The problem Kyvvu is targeting has become more urgent as companies move from using AI to suggest actions to letting it perform them, such as updating customer records, moving data between systems, issuing refunds, or running entire back-office processes without a human in the loop. A wrong suggestion is a minor inconvenience. An incorrect action taken autonomously is an incident, and in sectors like banking, insurance, and healthcare, it&#8217;s often one that must be reported to a regulator.<\/p>\n<p>Taming AI agents<\/p>\n<p class=\"col-start-2\">According to Kyvvu, the real danger isn&#8217;t in what an agent is technically permitted to do. Rather, the risk lies in the order it chooses to do things in. An agent might be allowed to read a certain customer record, and separately allowed to send emails outside the organization. Individually, both actions are approved. Combined, in the wrong sequence, they amount to a data leak. Because agents decide their own path while running, that harmful combination can slip past security tools that only check one action at a time.<\/p>\n<p class=\"col-start-2\">&#8220;The internet only scaled once we built the security layer that made it safe to run real workloads on it. Agents are at exactly that point,&#8221; said Jeroen Ghijsen, co-founder and CEO of Kyvvu. &#8220;They will only be trusted with work that matters once something inside them is checking each action before it happens.&#8221;<\/p>\n<p class=\"col-start-2\">Kyvvu&#8217;s product, called the Agent Security Kernel (ASK), sits inside the agent itself and evaluates every action \u2014 reading data, calling a tool, sending a message \u2014 against everything the agent has already done in that task, before deciding to allow, warn, or block it. The rules are fixed, version-controlled policies that a compliance officer can inspect, rather than judgments made by a second AI model, and they never leave the customer&#8217;s own systems. The company says the engine is deterministic, meaning the same input always produces the same verdict, and decisions are returned fast enough that the agent&#8217;s performance isn&#8217;t slowed down.<\/p>\n<p>The need for a control point <\/p>\n<p class=\"col-start-2\">The kernel is framework-agnostic and available as source code, and it&#8217;s already running at financial services, insurance, and healthcare organizations in the Netherlands. Because every action passes through the same checkpoint, the system also generates a detailed record of what each agent did \u2014 something Kyvvu says lines up with record-keeping and human-oversight requirements under the EU AI Act and GDPR.<\/p>\n<p class=\"col-start-2\">&#8220;Enterprises are deploying agents faster than they can govern them, and the tooling to keep those agents in line simply has not existed,&#8221; said Sander Vonk, Managing Partner at Volta Ventures. &#8220;We think a runtime control point becomes a hard requirement for running agents at scale, the way endpoint security did before it. We are backing Jeroen, Maurits and the team to define what that looks like.&#8221;<\/p>\n<p>Keeping North Brabant competitive in AI<\/p>\n<p class=\"col-start-2\">The company grew out of research at the Jheronimus Academy of Data Science in Den Bosch, where the founding team was building AI agents before most enterprises had deployed one in production. Kyvvu will use the new funding to expand its engineering team, grow its partner network, and support deployments across Europe.<\/p>\n<p class=\"col-start-2\">&#8220;Kyvvu is the kind of company that keeps this region competitive in AI,&#8221; said Robin Hendrickx, Senior Investment Manager and Team Lead Key Technologies at BOM. &#8220;Every large enterprise putting agents into production is about to run into the same wall, and this team is already on the other side of it, from Den Bosch, with live customers in some of the most heavily regulated sectors in the country.&#8221;<\/p>\n","protected":false},"excerpt":{"rendered":"Dutch startup Kyvvu has raised \u20ac1 million to fix a security gap that most companies deploying AI agents&hellip;\n","protected":false},"author":2,"featured_media":143428,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[405,7537,2315],"class_list":["post-143427","post","type-post","status-publish","format-standard","has-post-thumbnail","category-agentic-ai","tag-ai-agents","tag-artificial-intelligence-agents","tag-startup"],"_links":{"self":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/143427","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/comments?post=143427"}],"version-history":[{"count":0,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/143427\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media\/143428"}],"wp:attachment":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media?parent=143427"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/categories?post=143427"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/tags?post=143427"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}