Map every AI to the humans and non-human identities behind it, and every system, dataset, and agent it can reach.

An assistant given a token quietly inherits every entitlement that token has, often far more than the task ever required.
Without a clear identity graph, a single hijacked agent is a lateral-movement pipeline into production data, code, and SaaS.
IAM tools weren't built to trace agents, MCP tools, and model calls back to the identity that made them.

AIBound resolves every AI back to the identity it operates as, and traces exactly what that identity can touch.
| AI Resource | Identity | Connections | Blast Radius |
|---|---|---|---|
| Cursor Agent | svc-eng-01 | GitHub · Jira · Prod DB | High |
| Sales GPT | amy@corp.io | Salesforce · Gmail | Medium |
| Support Bot | svc-ai-help | Zendesk · S3 | Medium |
| MCP: FS-Read | root shell | / (full disk) | Critical |
| Copilot Chat | dev group (43) | Repo scope | Low |

We had no idea our agents were running with the same rights as our engineers, until we saw the graph.
Map every AI to its identity, its data, and its blast radius in a single view.