We tend to your AI stack.
Cryptographic security, multi-tenant isolation, and efficiency for the AI agent systems you're already running.
Built on Cittela — 10 filed UK patents on geometric cryptographic substrate.
The Problem
AI agent systems are shipping faster than the infrastructure that secures them.
Multi-tenant isolation is broken.
Agents serving different tenants leak state through shared inference infrastructure.
Cold-start agents are inefficient.
Every new session starts from zero, burning compute on context that should persist.
Capability hierarchies are policy-enforced, not cryptographically enforced.
One compromised agent reads them all.
What We Tend To
Four gains we bring to your stack.
Multi-tenant isolation
Cryptographic separation between agents serving different tenants. Substrate-level guarantees, not policy promises.
Cold-start efficiency
Agent context that persists across sessions without leaking between them. Faster time-to-first-token, lower compute waste.
Capability hierarchy
Cryptographically enforced trust tiers. SYSTEM-level orchestrators, USER-level task agents, TOOL-level executors. Each tier sees only what it should.
Prompt injection defence
Attention-layer security that defeats injection attacks even when hostile content is legitimately retrieved by your own queries.
How It Works
The substrate beneath your stack.
Colmenero is built on Cittela — our research arm — and its filed portfolio of geometric cryptographic primitives for AI compute. We don't replace your AI stack. We add a substrate layer that makes the agents you've already deployed safer, faster, and more capable. Integration is at the inference layer; the systems you use don't change.
Cittela invents
Geometric cryptographic primitives, 10 filed UK patents
Colmenero deploys
Substrate-layer security and efficiency for AI agent systems
Your stack thrives
Multi-tenant, secure, efficient, hierarchy-aware
Why Now
2026 is the year this matters.
Local LLMs crossed the usability threshold. Production-grade models run on commodity hardware. The substrate matters now in ways it didn't two years ago.
Multi-tenant isolation became a published problem. KV-Cloak (NDSS 2026) and SafeKV (Feb 2026) confirmed what the field already knew: inference infrastructure leaks state across tenants.
Compliance pressure is binding, not aspirational. Every regulated industry has had its first 'employee pasted confidential data into ChatGPT' incident. The boards are paying attention.
The Research
Two years of patented work, ten filings deep.
Cittela is the research entity that holds the cryptographic primitives Colmenero deploys. Ten UK patent applications filed across the GDV and GDC invention families, covering substrate-level isolation, capability hierarchies, and attention-layer security. Colmenero is the productisation; Cittela is the moat.
Learn more about Cittela →Get Involved
Become a design partner.
We're working with a small number of early teams to deploy Colmenero into real AI stacks. If you're running agent systems and feeling the pain of multi-tenant isolation, cold starts, or attention-layer security — let's talk.
Get in touch