Skip to content

Lyrie

Lyrie is a Dubai pre-seed startup building an open cryptographic trust protocol and autonomous pentesting tools to secure AI agents acting on enterprise systems.

Visit Website ↗ + Add to Compare Claim This Company
48/100Emerging / Unranked

Overview

Lyrie.ai, built by Dubai-based OTT Cybersecurity LLC and led by founder Guy Sheetrit, describes itself as security infrastructure for the AI agent era. The company exited stealth in May 2026 with a $2 million pre-seed round and simultaneously released the Agent Trust Protocol (ATP), an open, MIT-licensed cryptographic standard for establishing AI agent identity, permission scope, attestation, delegation, and revocation, which it has submitted toward IETF standardization. The same announcement disclosed that Lyrie was accepted into the first batch of Anthropic’s Cyber Verification Program, an independently reportable credibility signal beyond the company’s own claims.

Lyrie’s open-source engine (lyrie-omega, a Python CLI, paired with a TypeScript ATP SDK) runs a seven-phase autonomous pentesting pipeline, covering reconnaissance, fingerprinting, scanning, exploitation, proof-of-concept generation, and reporting, against live targets and source code, outputting SARIF-format results compatible with GitHub code scanning, plus an adversarial red-teaming module for LLM endpoints. Separately, the company’s commercial site markets a much broader consolidated suite (WAF, endpoint defense/EDR, vulnerability scanning, automated patching, breach monitoring, and free CAPTCHA) pitched as a single-platform replacement for a multi-vendor security stack.

The combination of a genuinely novel open protocol, a working open-source tool with real GitHub traction (300+ stars), and coverage in trade outlets like Help Net Security and CIO.com supports that Lyrie is a real, operating company. But it is very early stage, pre-seed, small team, no disclosed enterprise customer base or independent efficacy testing, and its ‘one platform replaces your entire security stack’ marketing significantly outpaces what a startup at this stage can be expected to have proven.

Innovation Matrix Assessment

Innovation Velocity 7/10

Moved from stealth to a working open-source tool, an IETF-track protocol, and acceptance into Anthropic's Cyber Verification Program within months of its pre-seed close, genuinely fast for a tiny team.

Operational Value 5/10

Offers real capabilities (automated pentesting, EDR, WAF, breach monitoring) that could reduce manual work at smaller organizations, but bundling six product categories at pre-seed stage is breadth without demonstrated depth.

Market Momentum 5/10

Real but early signals: $2M pre-seed, Anthropic Cyber Verification Program acceptance, 300+ GitHub stars, coverage in legitimate trade press; no disclosed enterprise customers or revenue evidence.

Category Disruption 4/10

The Agent Trust Protocol is a genuinely novel proposed open standard, but 'replace your entire security stack' is an outsized claim from a pre-seed startup with an unproven track record.

Real-World Efficacy 3/10

No independent testing, named incident, or third-party validation found; trade-press coverage is descriptive of the tool's design, not an efficacy evaluation.

Enduring Relevance 5/10

AI agent identity and trust is a real, growing problem, and ATP's IETF submission path could matter if adopted, but it is far too early to be confident it will gain standards traction.

Why CISOs Should Care

Offers a single vendor covering WAF, endpoint defense, vulnerability scanning, and breach monitoring, plus an emerging open standard (Agent Trust Protocol) for authenticating and scoping autonomous AI agents before they act on enterprise systems.

What Makes It Different

Rather than one point tool, Lyrie bundles six security functions under one login and separately publishes an open, IETF-track cryptographic protocol for agent identity and authorization, positioning itself as infrastructure rather than a single product.

The Matrix Verdict

48/100 — EMERGING / UNRANKED

Funding, a working open-source pentesting tool, and Anthropic Cyber Verification Program acceptance are real, independently reported signals, but the company is pre-seed, unproven at enterprise scale, and its stack-replacement marketing outpaces available evidence.

Editorial Note: Claims vs. Verified Findings

Marketing claims like 'replaces 5+ tools' and '60% cost savings' are unverified vendor assertions found only on lyrie.ai. The $2M pre-seed round, Agent Trust Protocol release, and Anthropic CVP acceptance are corroborated by multiple independent trade outlets (Help Net Security, CIO, Network World, DevOps.com).

Sources