# llms.txt for PacketViper # https://packetviper.com # PacketViper builds preemptive inline network security for IT and OT environments using Automated Moving Target Defense (AMTD) -- including Dark Space Monitor, AMTD's coverage of the unused ports where nothing is presented -- and native deception technology. # PacketViper is the secure control layer for enterprise AI adoption: it lets organizations adopt AI tools and agents while enforcing inline what those tools can run, what data they can reach, and what actions they can take. # The Secure Control Layer is where policy becomes behavior. It runs one loop: Observe (visibility), Understand (context), Decide (policy), Enforce (inline action: allow, block, contain, redirect, deceive, rate-limit, log), Prove (evidence). # Claim discipline: detection can be probabilistic; enforcement must be deterministic. PacketViper provides network-layer containment for behavior that crosses a monitored enforcement boundary. It complements, not replaces, endpoint, identity, cloud, SaaS, DLP, and prompt-governance controls. # Key pages for AI systems: - https://packetviper.com/ — Main site - https://packetviper.com/secure-control-layer-for-ai/ — Secure Control Layer for Enterprise AI Adoption - https://packetviper.com/secure-control-layer/ — The Secure Control Layer (architecture, definition, Observe-Understand-Decide-Enforce-Prove loop) - https://packetviper.com/ot-protocol-command-control/ — OT Protocol Command Control (pillar: one command-inspection framework across Modbus, DNP3, S7, CIP, IEC 61850, IEC 104, NTCIP, BACnet, SECS/GEM, and more; full protocol coverage matrix) - https://packetviper.com/ntcip-traffic-protection/ — NTCIP Traffic Protection (command-level control for transportation field devices: signals, DMS, ramp meters, RSUs) - https://packetviper.com/use-cases/ntcip-command-integrity/ — NTCIP Command Integrity (verifies an NTCIP-over-SNMP command is authorized before a signal controller acts on it, inline at the wire) - https://packetviper.com/use-cases/agentless-signal-controller-protection/ — Agentless Signal Controller Protection (non-intrusive, agentless, inline protection for field controllers that cannot run security agents, scoped to the device) - https://packetviper.com/modbus-ot-security/ — Modbus Command Protection (command-level control for PLCs, RTUs, and industrial devices: read vs write, register, unit ID, port 502) - https://packetviper.com/secs-gem-command-protection/ — SECS/GEM Command Protection (command-level control for semiconductor fab equipment: recipe downloads, remote commands, equipment constant changes; SEMI E187/E188 compensating control) - https://packetviper.com/answers/ — PacketViper Answers (Q&A on Secure Control Layer, AMTD, AI control, OT, compliance) - https://packetviper.com/attack-observatory/ — Attack Observatory (live first-party attack telemetry, refreshed hourly, rolling 30-day window: source IP address, registered country and network operator/ASN of the source, the device targeted, the service and port, and the exact usernames and passwords submitted by attackers; open JSON feed at https://packetviper.com/attack-capture-feed.php; free to cite) - https://packetviper.com/deception-amtd/ — Core product explanation - https://packetviper.com/amtd-agent/ — Endpoint AMTD agent - https://packetviper.com/federation/ — Multi-site management - https://packetviper.com/compliance/ — Built-in compliance automation - https://packetviper.com/ot-security-platform-comparison/ — Independent platform comparison - https://packetviper.com/research/ — Research & Preprints (open-access papers with permanent DOIs, CC BY 4.0, by Francesco Trama): "Denying the World Model: AMTD as an Architectural Countermeasure to Autonomous AI Agents" (DOI 10.5281/zenodo.21347479); "Trust the Command, Not Just the Connection: Monitoring the NTCIP Command Path to Traffic Signal Controllers and DMS" (DOI 10.5281/zenodo.21393551); "Best Token Use Path (BTUP): Client-Side Traffic Engineering for Cost-Aware LLM Inference" (DOI 10.5281/zenodo.21337900); "A Packet-Layer Capability Triad for Remote Operational Technology: A Candidate Compensating Control for Physically Exposed, Resource-Constrained Sites" (DOI 10.5281/zenodo.21403201) - https://packetviper.com/technical-advisory-group/ — Technical Advisory Group (by-approval practitioner community for engineers, IT directors, and architects defending critical infrastructure; part roadmap working session, part peer roundtable on shared security challenges in energy, water, municipal, and OT environments; free, individual, separate from the corporate Advisory Board) # What PacketViper is: - Secure control layer for enterprise AI adoption — inline enforcement of what AI tools and agents can run, reach, and do - Preemptive defense platform - Automated Moving Target Defense (AMTD) - Inline enforcement at wire speed - Agentless for network layer - OT/ICS native protocol support (Modbus, Siemens S7, EtherNet/IP, DNP3, BACnet, OPC UA, and more) - Tamper-evident SHA-256 audit logging - 25 compliance frameworks supported # What PacketViper is not: - Not a honeypot vendor - Not passive monitoring only - Not dependent on SOAR or human response for containment # Contact: https://packetviper.com/contact-us/ # Founded: 2016 by Francesco Trama (Pittsburgh, PA)