Agentic Thinking Limited

Runtime governance for AI agents and coding assistants in regulated enterprises.

Prove what your agents did. Stop what they should not have done. Before auditors ask.

A UK company building the runtime governance infrastructure regulated enterprises need to adopt AI agents safely. Three products, patent-pending architecture, pilot-ready.

Runtime governance for coding assistants and autonomous workflow agents.

See HookBus capture an agent action, AgentProtect apply hard block, allow, or ask, the human-approval workflow route a reviewer decision, and AgentAuditor preserve the evidence trail. Fixed-price validation sprints are typically three days and can launch into a full pilot.

72 seconds · click to play with sound

Three products. One AgentHook-aligned governance architecture.

AgentHook is the open runtime evidence standard. Agentic Thinking implements it in working software. Each product has its own home, linked below.

Product 1

AgentProtect

The central governance control plane.

Central policy, approvals, audit aggregation, SIEM and DLP integration for regulated estates. Patent-pending L1 + L2 policy engine. On-premise, VPC, or air-gap.

Product 2

HookBus Agent

The hook-complete governed agent runtime.

Governed execution with request, plan, tool, approval, notification, evidence, and audit hooks surfaced from day one. Connects into AgentProtect when central policy is required.

Product 3

HookBus

The AgentHook-aligned runtime router.

Routes AgentHook-compatible lifecycle evidence to subscribers for governance, audit, cost, memory, DLP, and approval. Apache 2.0, self-host, vendor-neutral. Works with Claude Code, Cursor, Amp, Copilot, Codex, and more.

Agentic Thinking Limited.

A UK company building the runtime-governance infrastructure regulated enterprises need to adopt AI agents safely. Three products, patent-pending architecture, pilot-ready. Building an AI runtime and need a governance story? White-label and OEM licensing: partnerships@agenticthinking.uk.

Leo Ruocco
Built by Agentic Thinking.

Founded by Leo Ruocco, on 27 years across UK financial services, insurance, and defence, building the controls layers auditors actually read.

Agentic Thinking turns enterprise-grade engineering into runtime governance that regulated organisations can deploy with confidence.

Company
Agentic Thinking Ltd
Patent: HookBus
GB2608069.7
Patent: CRE
GB2604445.3
Trademark
HookBus™

Designed for organisations whose procurement starts with a questionnaire.

AgentProtect is built for the deployments where a CISO signs a DPIA before the tool goes live. Regulation may arrive on different timelines in different jurisdictions, but enterprises deploying agents into real workflows need runtime evidence, approval, and control now.

EU AI Act readiness

Supports runtime evidence preparation

Where AI regulation requires record keeping, oversight, or auditability, HookBus and AgentHook-compatible evidence help produce the runtime trail: tamper-evident, chained, exportable.

SOC 2

Evidence for Type II audits

Produces the event-level audit trail your SOC 2 Type II assessor expects. Built to slot into your assurance programme.

ISO / IEC 42001

Aligned to AIMS controls

Deployment, operation, incident-response, and review features map to ISO 42001 clauses. Built to support customers running an AI management system.

GDPR · HIPAA · PCI

Boundary-level data protection

DLP Filter redacts API keys, PII, financial identifiers, and infrastructure strings at the envelope. Regulated data never leaves the agent boundary.

No cloud dependencies

On-prem, VPC, air-gap

AgentProtect runs locally, CPU-only. No external API calls at decision time. Deploy where your DPIA allows.

Agentic Thinking Limited does not currently hold third-party compliance certifications. The products are built to the evidence standards SOC 2 Type II and ISO/IEC 42001 require, and customers can use them inside their own compliance programmes today. Security posture documentation is available under NDA — see the Trust Center.

On-premise VPC Air-gap No cloud dependency

Book 30 minutes. Walk out knowing whether we fit.

Built for organisations running AI agents in production or coding assistants across internal IT, targeting regulated-industry deployment. Call for details. Not the right price point for a hobby project, exactly the right price point for a bank.