Fraktional
Sign in

Agentic factories, built and run in your cloud.

Fraktional deploys virtual sandboxed workspaces where your people and your AI agents do their work: self-hosted in your cloud, kept running on a flat retainer, and ready for SOC 2, HIPAA, and ISO. Your security, DevOps, and CTO arm. You own all of it.

Workspaces live
47
+8.0% from last month
Evals passing
1,284
+12.2% from last month
Controls mapped
312
+5.4% from last month
Open findings
9
-31% from last month
Eval pass-rate · 2025
96%+25 pts YoY
MonthlyWeekly
Jan
Feb
Mar
Apr
May
Jun
Jul
Aug
Sep
Oct
Nov
Dec
Recent activity
5 live
  • Pe
    Platform eng
    scoped GitHub access
    approved
  • Be
    Backend eng
    ran eval suite
    passed
  • De
    Data eng
    mapped 12 controls
    synced
  • Se
    Security eng
    shipped guardrail
    deployed
  • So
    SRE on-call
    closed finding
    resolved
Guardrail checks · last 24h
24.8Kchecks
24h7d30d
Framework coverage
  • ISO 4200192%
  • SOC 288%
  • HIPAA74%
  • EU AI Act61%
  • FedRAMP43%
  • NIST AI RMF57%
Top agent tools
Last 30 days
Tool
Runs
Sessions
Pass
review-pr
12,847
8,421
24%
run-evals
8,392
6,103
32%
map-controls
6,219
4,887
18%
scan-secrets
4,102
3,654
41%
audit-access
3,847
2,912
29%
Recent findings
8 records
Finding
Area
Status
Control
Owner
Date
FND-001
Access control
Pass
SOC 2 CC6.1
O. Martin
2025-01-15
FND-002
Model evals
Pending
ISO 42001
J. Lee
2025-01-14
FND-003
Secrets handling
Pass
SOC 2 CC6.6
I. Nguyen
2025-01-13
FND-004
Prompt injection
Failed
EU AI Act
W. Kim
2025-01-12
FND-005
Audit logging
Pass
SOC 2 CC7.2
S. Davis
2025-01-11
FND-006
Data residency
Pass
HIPAA §164
L. Johnson
2025-01-10
FND-007
Output filtering
Pending
ISO 42001
E. Wilson
2025-01-09
FND-008
Sandbox isolation
Pass
FedRAMP AC-4
N. Brown
2025-01-08
Activity feed
  • A
    Agent blocked an unscoped token
    2m ago
  • JL
    Jackson L. approved eval gate for prod
    8m ago
  • A
    Agent flagged a prompt-injection risk
    14m ago
  • WK
    William K. rotated a leaked secret
    22m ago
  • A
    Agent mapped 4 controls to SOC 2
    31m ago
  • SD
    Sofia D. revoked stale repo access
    45m ago
Eval pass rate
96.2%+1.1% from last week
M
T
W
T
F
S
S
Guardrail coverage
99.4%last 90 days
30d agoToday

The work, at a glance.

Audit illustration
Audit
Spec · 4 capabilities, A through DHover or scroll to inspect
A.
AuditAudits run by our agents, signed by engineersOur agents sweep your infrastructure, access, and data flows in days, not quarters, and map the gaps against SOC 2, HIPAA, and ISO. A senior engineer verifies and signs every finding.
B.
WorkspacesSecure workspaces where your people workCloud desktops, streamed apps, dev environments, or machines in your own office: whatever fits, on hardware you own or clouds you control. A stolen laptop gets a window into your systems, never a copy of your files.
C.
FactoryA software factory for your AI agentsCoding agents in sandboxes, with the databases, repos, and analytics they run on. Same boundary as your people, same rules, same audit trail. Frontier models through your cloud's private endpoints.
D.
OwnershipInfrastructure you keep, in accounts you controlYour cloud, your code, your keys. Keep us on to run it, or walk away with everything. If we disappear, you lose nothing.
8 use cases · humans and agentsUpdated · 2026.09

What this looks like in practice.

Everything we deploy is the same move: the work happens in a virtual workspace inside your cloud, and only pixels leave. What changes is who, or what, is doing the work.

For your people
01
Client files that never leave

Your team opens deals, records, and money flows in a desktop streamed from your cloud. A phished or stolen laptop holds pixels, not files.

02
Contractors with a key you control

A new contractor gets a workspace in minutes, sees only what the job needs, and every session is logged. Offboarding is one click, not a device hunt.

03
Dev environments next to your code

Engineers work in cloud workspaces that live beside your repos. Source never sits on a personal machine, and a new hire ships on day one.

04
Your own hardware, worked from anywhere

Machines you own, in a place you control, reached through a locked-down tunnel. Same rules and the same audit trail, without a cloud bill.

For your agents
05
A fresh sandbox per task

An agent spins up its own virtual machine, does the work, and the sandbox dies with the task. Nothing persists that you didn't approve.

06
Code shipped by agents, gated by rules

Coding agents work your backlog inside the factory. Every change passes your evals and guardrails before a human merges it.

07
Regulated documents, processed inside

Agents read and file documents that can't touch an outside service. The model reaches in through your cloud's private endpoints; the data never reaches out.

08
Ops that never sleep

An agent watches logs, queues, and access in your accounts and opens the ticket at 3am. It sees your systems; it can't leave them.

Bulletin № 01FRK-2026-Q3 · Sheet 1/1Filed from your VPC · 03:14 UTC
Headline · Filed 2026.09.09

Installed in weeks. Run on retainer. Owned by you.

We install agentic factories and secure workspaces in your own cloud, then keep them running on a flat monthly retainer. Any agent harness, a full open-source stack, and the compliance work done before launch. No per-seat licenses, no metered agents, no vendor to outgrow. When we’re done, you own the code and the keys.

  • Any
    Agent harness · Claude Code, OpenHands, yours
  • Weeks
    To a working factory · not quarters
  • 100%
    Owned by you · code, keys, cloud
This isn’t a pilot. It’s production you keep.
§ How it worksNo lock-in at any step

From first call to running factory.

0115 min
Scoping call

Fifteen minutes with a senior engineer, not a sales rep. Bring the messy stack; we'll tell you if there's a real path, or who to call instead.

022-4 wks
Audit

We sweep your infrastructure, access, and data flows, and map the gaps against SOC 2, HIPAA, and ISO. You get findings and a fix plan that are yours to keep, act on, or hand off.

031-2 wks
Pilot

A few seats or one agent workflow goes live in your cloud. You watch real work happen in a real workspace before committing to a rollout.

04Monthly
Rollout & retainer

We roll out to the team, wire in the evals and guardrails, and keep it all running on a flat monthly retainer. Walk away anytime, with everything.

3 engagements · 2026Issue 01 · Field notes

What teams keep when the engagement ends.

01Illustrative

We wanted Claude Code in our engineers’ hands without leaking IP or failing the next audit. They shipped the guardrails, the evals, and the rollout. We owned all of it on day one.

VP Engineering·Regulated fintech·Illustrative
Engagement · 8 weeks · 2026frame 01/03
02Illustrative

They replaced a legacy vendor with an agentic system we run ourselves. There are no seat licenses to renew and nothing to migrate off later. Our team understands and controls the whole codebase.

Head of Platform·Series B health-tech·Illustrative
Engagement · 10 weeks · 2026frame 02/03
03Illustrative

The security rigor was the difference. We walked into review with the AI governance mapping already done, and the deployment cleared on the first pass.

CISO·Public-sector contractor·Illustrative
Engagement · 12 weeks · 2026frame 03/03
9categories · head-to-headUpdated · 2026.09
Us
Own it.
Them
Legacy.
01Ownership
Fraktional

You own the code and the cloud.

Legacy

You rent access, indefinitely.

02Pricing
Fraktional

Build once, run at cost.

Legacy

Per-seat, per-call, forever.

03Data
Fraktional

Stays inside your boundary.

Legacy

Lives on their servers.

04Devices
Fraktional

Nothing stored on their laptops.

Legacy

Your files on every laptop.

05Agents
Fraktional

Run in your accounts, sandboxed.

Legacy

Run in their cloud, metered.

06Security
Fraktional

Hardened from the first commit.

Legacy

A checkbox on their roadmap.

07Reviews
Fraktional

One security review: yours.

Legacy

One per vendor, forever.

08Compliance
Fraktional

ISO 42001, SOC 2, EU AI Act ready.

Legacy

Their attestation, not yours.

09Lock-in
Fraktional

Leave anytime. It’s all yours.

Legacy

Migration is the whole point.

§ Engagements · most start with the audit · 2026

Audit, retain, or install. You own everything we ship.

Fraktional · AuditFRK-AU-2026

A full audit of your stack, with the fix plan to match.

Includes
  • ·Infrastructure, access & vendor reviewincl.
  • ·Remote access & devices · reviewedincl.
  • ·AI usage & data-flow mappingincl.
  • ·Run by our agents · signed by engineersincl.
  • ·Prioritized findings · fix planincl.
  • ·Compliance gaps · SOC 2 · HIPAA · FedRAMPincl.
  • ·Yours to keep, act on, or hand offincl.
  • Timeline2 to 4 weeks
  • Lock-innone
Total dueFixed/ audit
Auth · 0xfrkau2026Holder · your team
Fraktional · RetainerFRK-FR-2026

Your fractional CTO/CISO, on call and already up to speed.

Includes
  • ·Fractional CTO/CISO · ongoingincl.
  • ·Audit first · findings drive the workincl.
  • ·We operate everything we installedincl.
  • ·Builds & fixes · prioritized monthlyincl.
  • ·Always-on monitoring · we watch what we runincl.
  • ·AI governance · ISO 42001 · EU AI Actincl.
  • ·AI tooling rollouts & team enablementincl.
  • ·Hiring help when you bring it in-houseincl.
  • Cadencemonthly
  • Seat licensesnone
  • Lock-innone
Total dueFixed/ mo
Auth · 0xfrkfr2026Holder · your team
Fraktional · InstallFRK-IN-2026

Secure workspaces or a software factory, installed in weeks.

Includes
  • ·Workspaces · your people, on any deviceincl.
  • ·Factory · your agents, in sandboxesincl.
  • ·In your cloud · any provider · GovCloud readyincl.
  • ·Access controls, logging, evals · wired inincl.
  • ·Security review · passes first timeincl.
  • ·Full handover · you own it allincl.
  • Pilot firsta few seats
  • Timeline2 to 12 weeks
  • Lock-innone
Total dueFixed/ install
Auth · 0xfrkin2026Holder · your team

Scoped per engagement · you own the output · no lock-in

§ Open a line

Tell us the real problem.

Bring the messy stack, the audit that’s looming, or the AI rollout your security team keeps blocking. We’ll pressure-test it and tell you if we’re a fit. And if an off-the-shelf tool solves your problem, we’ll say so and point you to it.

Reply time
Within 1 business day
Call length
15 minutes
Who answers
A senior engineer, not a sales rep