New startup ideas · AI and software · Agent infrastructure
startup idea
Actledger
Signed action records for enterprise agents, with a policy pack ecosystem on top.
Actledger sits between an enterprise's agents and the systems they touch: every tool call is authorized against policy, signed, and written to an immutable action record mapped to audit controls.
- Software subscription
- Enterprise
- $10-100B market
- Platform others build on
- US first
4/5
venture judge
9
similar startups, last 2 years (23 all-time)
98%
of 4 nearest real companies still alive
yes
8 matching federal grants and programs
Direction supported by government programs and grants
Test it before you build it
$1,400 · 6 weeks · 20 prospects
Prove for under $1,500 in six weeks that internal audit at regulated US enterprises will prepay $4,000 for a signed, control-mapped record of what their coding agents changed.
1Focus group: who and where
Director of internal audit, IT audit manager, or security engineering lead at a US bank, insurer, or healthcare company (1,000-20,000 employees) whose engineering org rolled out coding agents (GitHub Copilot coding agent, Cursor, Claude Code) and who must sign off on SOX ITGC or SOC 2 change-management evidence this audit cycle with no record of what the agents wrote to source control and ticketing.
where to find 20 · LinkedIn Sales Navigator filtered to titles Director Internal Audit, IT Audit Manager, and keywords SOX or ITGC at financial services and healthcare companies whose engineering job posts mention Copilot or Cursor; ISACA local chapter meetings; IIA chapter events; r/InternalAudit and r/cybersecurity for cold recruiting.
2Sell first, build later
A 4-week paid pilot: instrument write actions from one coding-agent fleet against your GitHub and Jira, produce a signed immutable action record, and deliver one audit-ready evidence export mapped to your SOX ITGC or SOC 2 change controls, starting within 2 weeks of signature.
the ask · $4,000 per pilot invoiced up front, creditable against a $24,000 per year subscription
a real yes · A real yes is a paid invoice or an issued purchase order with a dated kickoff and a named audit owner. Unpaid POCs, security-team enthusiasm, and 'come back after our audit season' are not a yes; a signed order form with a PO in procurement is pending, not won.
3Small experiments
The first one attacks the riskiest assumption; each ends with a number that says whether to run the next.
1. Evidence-gap interviews with prototype
$150 · 12 days
Book 15 calls with IT audit leads recruited via Sales Navigator and ISACA chapters. Walk a clickable Figma of a signed action record and an evidence export mapped to SOX ITGC change-management controls. Ask what evidence they currently have for agent-authored changes and whether it would survive their external auditor.
keep going if · 9 of 15 say their current agent change evidence would not pass external audit, and 5 offer access to real logs
2. Concierge evidence pack
$200 · 21 days
For 3 volunteers from the calls, manually pull GitHub audit logs, PR history, and Jira records for agent-authored changes and hand-build a signed, hash-chained evidence pack mapped to their named controls, delivered in one week per company. No product, just scripts and a PDF.
keep going if · 2 of 3 audit leads accept the pack as filable evidence and ask for it quarterly
3. Priced pilot fake door
$600 · 14 days
A one-page offer, agent action evidence pilot, $4,000, 4 weeks, 2 slots per month, emailed to 100 audit leads from the Sales Navigator list with a booking link for a scoping call. The page states the prepaid price; the scoping call is the door.
keep going if · 5 scoping calls booked from 100 emails, 3 of which include the person who owns the audit budget
4Collect a deposit up front
Tesla took $1,000 refundable reservations for the Model 3 and $100 for the Cybertruck before building either: the deposit is the measurement, not the revenue.
$4,000
per prospect, refundable
how · Paid design-partner pilot: one-page order form signed by the audit or security lead, paid before kickoff via Stripe invoice or ACH; where procurement cannot prepay, take a signed pilot agreement with a dated start plus a $1,000 deposit and treat anything less as pending set up: Stripe Invoicing ↗
what it reserves · One of 2 monthly pilot slots, first-year subscription price locked at $24,000, and their control framework built into the first evidence-export templates
refund · Full refund if the signed evidence export is not delivered by day 30 of the pilot
target · 2 prepaid pilots ($8,000 collected) from 20 conversations within 6 weeks
Go: build it if
2 pilots paid up front, 2 of 3 concierge packs accepted as filable evidence, and 9 of 15 interviews confirm the evidence gap is a this-audit-cycle problem: build the proxy and policy engine.
Kill: stop if
0 prepaid pilots after 20 conversations, or fewer than 5 of 15 audit leads say agent evidence is a finding risk this year: oversight is settling into the runtimes, stop.
Would you run this test?
One tap. The yes-share feeds the Demand pillar of this idea's score; nobody sees who answered.
Budgets are out-of-pocket estimates for a team of one to three, US market. Size the deposit to the deal, and check the terms before taking money in a regulated line.
Scorecard
One score that balances how trendy the idea is, the demand for it and its potential for 100x, with competition measured relative to every other idea in the catalog. Recent startup trends first, government priorities second.
69
Idea Score, 0-100 · raw 42.3 x 1.64
Active
competition: more crowded than 69% of ideas · headwind x0.65
+2.9
government priorities, secondary (19 matching grants)
Trend
53
Is the wave forming now? 2025-26 entrants vs 2023-24, rounds since 2025, the sector's live-batch direction, the 2026 trend analyst.
- Entrants 2025-26 vs 2023-24 (similar companies)53
- Rounds announced 2025+ in the sector8
- Sector direction (live batch)100
- 2026 trend analyst50
Demand
68
Does anyone want it? YC's current RFS, companies already paid for something similar, the operator judge, founders' yes-rate in decks, readers who would run the test.
- YC asks for it (current RFS: idea / sector)30
- Someone already pays (similar companies, recent / all-time)100
- Operator judge: real pain75
100x potential
61
Can it return a fund? The venture judge (double weight), market-size and moat axes, neighbours still alive, the technologist judge.
- Venture judge75
- Market size axis67
- Moat axis100
- Neighbours still alive23
- Technologist judge25
Score = 100 x cbrt(Trend x Demand x 100x) x (1 - 0.5 x crowding) + government bonus (max 5), calibrated so the 95th-percentile idea scores 90 (order never changes). A geometric mean: a weak pillar cannot be papered over. Percentiles are among the 272 ideas in the catalog; the terms matched were signed, action, records, enterprise, policy, pack, ecosystem, sits.
The idea in full
- What
- Actledger sits between an enterprise's agents and the systems they touch: every tool call is authorized against policy, signed, and written to an immutable action record mapped to audit controls. Security and internal audit teams buy it as a subscription per agent seat; ISVs, MSPs and IAM vendors build and sell policy packs (finance close, PHI handling, production change) on the public SDK. It is normal backend engineering - a proxy, a policy engine, a signed log - not new model research, so the first controlled rollouts ship inside a quarter.
- Why now
- The cluster added 107 new companies in 2026 alone against 70 in all of 2024, so enterprises now run agents from a dozen vendors with no common record of what those agents did, and NSF has put ~$1.5M into the Safe-OSE Center for Security-Assuring AI Agent Communication and Interoperability Standard, which means the interoperable control layer is being standardized right now rather than in five years.
- Wedge: first customer and entry point
- One regulated US enterprise with a coding-agent fleet already in production: instrument only write actions against source control and ticketing, and hand internal audit the first evidence export they can actually sign off on.
- Path to 100x
- Enterprise security and GRC tooling is a $10-100B spend and agent oversight is becoming a mandatory line item inside it; Actledger takes a per-agent subscription across every runtime an enterprise uses, which is a bigger surface than any single runtime vendor can address. The data moat compounds - the labeled corpus of which agent actions got denied, reversed or flagged across hundreds of enterprises makes the risk scoring better than any newcomer can bootstrap, and the policy pack ecosystem makes partners dependent on the schema.
- Ceiling
- If agent oversight settles as a checkbox feature of the runtime rather than a separate control plane, this caps as a $100-200M ARR compliance tool bought by auditors, not a platform.
- Closest real companies, as the generator saw them
- Decawork sells an Agent Control Plane to IT teams and SpaceFlow Technologies, Inc. sells a managed runtime, both of which want to own where agents run; Actledger deliberately does not run the agent, it records and authorizes whatever runtime the enterprise already bought, which is why partners resell it instead of fighting it. Tesseral died doing open source identity for business software as a direct developer sale - the same primitive works when the buyer is audit and the motion is channel.
- Main risk
- The big cloud and model vendors bundle a good-enough action log into their own agent runtimes for free and enterprises stop paying for a neutral one.
Five judges
Each judge scores every idea in the catalog with a named rubric; the venture judge decides whether a card is shown at all (4-5 is venture-grade).
Venture investor
4/5
Revenue within a quarter, capital-light proxy economics, and a denied-action corpus across hundreds of enterprises inside a $10-100B GRC budget line.
Bootstrapper
4/5
A proxy, policy engine and signed log ships in a quarter to audit teams who already buy GRC tooling.
Operator
4/5
Internal audit owns GRC budget, the proxy ships inside a quarter, and it records whatever runtime the enterprise already bought.
Technologist
2/5
The card itself says proxy plus policy engine plus signed log is normal backend engineering shipping in a quarter, exactly what runtime vendors bundle free.
Risk
4/5
Runtime-neutral by design, sold to audit through ISV, MSP and IAM partners, so no single agent vendor controls its access.
trends
3/5
A neutral signed action log fits the compliance RFS, but it rides the agent-infrastructure cluster the brief shows at 16% of the S26 batch with 107 new 2026 entrants.
Similar startups in the directory
Companies whose pitch matches most of the idea's terms (signed, action, records, enterprise, policy, pack, ecosystem, sits): 23 all-time, 9 from the last two years. Same matching as Idea Check.
Agents that earn consumers dollars when they shop, travel, and live.
Construction paperwork that finally works for your team
Oasis monitors communication across teams and systems to keep enterprise knowledge updated and accurate in real time, eliminating $50M+ per company, per year lost to manual, memory-based collateral updates.
Credo AI is an adaptive AI governance platform that facilitates responsible AI adoption by translating policy and regulatory standards into actionable controls, thereby ensuring compliance, mitigating risks, and fostering trust among stakeholders.
Liability insurance for AI Agents. You deploy agents, we cover you.
Automatically blocking risky behavior with real-time governance agents
AI-powered Innovation, Made Easy. App Orchid enables AI-powered business outcomes with measurable ROI in 8-12 weeks.
SHADE.ai aims to become the leading conversational intelligent GenAI Agent (GAA) by leveraging advanced Vertical Generative AI.
Acuvity provides comprehensive AI security and governance for enterprise ecosystems.
Building the Future of Travel Extras and Ancillaries.
The open source platform for managing identity in business software
Medical language models to automate healthcare operations
The generator's reference companies
Real companies the model named as closest when it wrote the card, with their fate. A check mark is a company the radar could verify in its directory.
Public money in this direction
US federal grants, SBIR/STTR awards and open opportunities from the radar's public-money feed, matched to the idea's terms; the sector totals give the context.
8
grants and programs matching the idea
35
startup-relevant grants in Agent infrastructure
$15M
awarded in the sector, tracked
1
opportunities open now in the sector
- I-Corps: Translation Potential of Privacy-Preserving Internet of Things (IoT) for Clinical and Home Health Monitoringawardhigh relevance
National Science Foundation · I-Corps · $50K · posted 2026-08-20
- I-Corps: Translation Potential of a Privacy-Aware Stress Sensing and Conversational Companionawardhigh relevance
National Science Foundation · I-Corps · $50K · posted 2026-08-19
- I-Corps: Translation potential of a clinical decision support system for evidence-based reasoning for disease management and preventionawardhigh relevance
National Science Foundation · I-Corps · $50K · posted 2026-08-17
- STTR Phase I: A New Class of Injection Molded Biosymbiotic Devices for Long-Term, Multimodal Physiological Monitoringawardhigh relevance
National Science Foundation · STTR Phase I · $305K · posted 2026-08-13
- I-Corps: Translation Potential of a Digital Pet Health Management Software Platformawardhigh relevance
National Science Foundation · I-Corps · $50K · posted 2026-08-10
- Personalized Assessment and Care of Kidney Support in Critically Ill Patients(PACKS-ICU)awardhigh relevance
NIH / NIDDK · SBIR phase I · $305K · posted 2026-08-06
- I-Corps: Translation Potential of a Remote Monitor and Alert System for Early Detection of Battery Failureawardhigh relevance
National Science Foundation · I-Corps · $50K · posted 2026-07-30
- I-Corps: Translation Potential of an Artificial Intelligence (AI) Assistant for Course Management and Coordination in Higher Educationawardhigh relevance
National Science Foundation · I-Corps · $50K · posted 2026-07-17
Market signal
What the radar sees in Agent infrastructure: new companies by cohort year, the forming YC batch, and outcomes since the February snapshot.
Agent infrastructure · 27 → 63 → 106 → 148 → 126 new companies 2022 → 2026 · 95% aliveYC S26: 39 in this cluster, 16% of the batch (was 17% in X26) (F26 is still forming: 21 listed)Since February, of 244 YC companies here: 7 acquired, 2 shut down, 102 rewrote their pitch
Design attributes
The card is one cell of a designed set: every axis below was chosen before the text was written, and the text had to realize it.
- Buyer
- Enterprise
- Business model
- Software subscription
- Path to 100x
- Platform others build on
- Market size
- $10-100B market
- Capital intensity
- Capital-light (software margins)
- Speed to revenue
- Revenue within a year
- Technical depth
- Real engineering
- Go-to-market
- Partners and channels
- Moat
- Data moat
- Geography
- US first
- Regulation
- Some regulation
- Vibe
- Hot space
Listed under
An idea sits in its own sector and in any sector its text clearly touches.
More ideas like this
AI and software · Agent infrastructure
Socketry
The exchange where software vendors sell maintained, agent-ready API connections.
Socketry is a two-sided marketplace where SaaS vendors publish guaranteed-current, agent-callable versions of their APIs - tested sandboxes, auth, rate contracts, change notices - and enterprises subscribe to them for their internal agents with one bill and one security review.
AI and software · Agent infrastructure
Latchwork
Self-healing connectors for the long tail of small business software agents cannot reach.
Latchwork records a session against a vertical tool that has no usable API - a dental scheduler, a salon booking system, a freight dispatch app - and turns it into a connector that agents call like an API, then repairs itself when the vendor changes a screen.
AI and software · Agent infrastructure
Rubricon
An exchange where domain experts sell held-out eval suites that enterprises run on demand.
Rubricon is a marketplace for agent evaluation: radiologists, tax accountants, claims adjusters and network engineers publish task sets with graders, and enterprises pay per run to test their agents against them.
AI and software · Agent infrastructure
Civitrace
Casework agents for US agencies that turn every verified fact into reusable public evidence.
Civitrace runs eligibility and permit casework as a managed agent service for US state, county and city agencies: it reads submitted documents, checks them against source systems, drafts determinations, and hands a human caseworker a decision packet with citations.
AI and software · Agent infrastructure
Toolharbor
The governed registry every enterprise agent must pass through to touch a tool.
Toolharbor is a control plane that sits between an enterprise's AI agents and every tool, API, and MCP server they call, enforcing policy, credentials, and rate limits per agent.
AI and software · Agent infrastructure
Openstall
No-code layer that makes every small business readable and transactable for AI agents.
An SMB connects its booking, inventory, and payment tools (Shopify, Square, Calendly, QuickBooks) in a no-code dashboard, and Openstall publishes them as one hosted, self-maintaining endpoint that any AI agent can query and transact against.
Fictional company written 2026-08-22 from MarkosWeb data; the companies, grants and numbers around it are real and tracked. Treat the idea as a research prompt, not a plan.