We're hiring! Come build with us →
Zep

Governance and security

Access control, provenance, retention and memory security.

9 posts

Governance and security

Defending Agent Memory Against Poisoning

One poisoned message, web page, or document can shape every later session that reads the same memory. Persistent memory makes prompt injection durable. We explain how memory poisoning works and which controls contain it, in your application and in Zep.

Integrations

Memory for every agent your team uses

A knowledge worker's agents don't share what they know: Claude and ChatGPT often can't reach company context, and the agents you build never see what Claude and ChatGPT learn. The Memory MCP Server gives each user one agent memory across all of them, governed by policy.

Governance and security

How Zep tracks provenance in agent memory

Agent memory is synthesized: an LLM derives facts from chat histories, documents, and business data. A derived fact matches no source word-for-word, so nothing ties it back to where it came from. Zep records that lineage; debugging, source-scoped retrieval, and compliance all depend on it.

Governance and security

Securing Agent Memory with ABAC

Attach policies to any Zep API key to control the exact endpoints it can call and the graph data it can read.

Agent memory

Markdown is not agent memory

Some of the most capable agents in production keep their memory in plain markdown files, and for a single agent and a single user it is hard to beat. The pattern breaks in predictable places: at scale, as facts change and errors compound, and under concurrent agents.

Governance and security

Context You Can Trace, Filter, and Trust

Every fact in your agent's context graph came from somewhere. Zep's provenance architecture traces facts back to their source data — and lets you filter retrieval by origin.

Product updates

December 2024 Round-up

Explore User and Group Graphs, Fact Ratings, and SOC 2 Type 2 Certification!

Governance and security

Announcing Zep Archive: Records Retention and Right To Be Forgotten

Zep Simplifies LLM App Compliance with Data Privacy Regulations like GDPR and CCPA

Governance and security

New Features: JWT Authentication, Azure OpenAI APIs, & Configurable Hard Deletion

Zep now supports JWT Authentication, Azure OpenAI APIs and OpenAI OrgIDs, and a configurable, periodic purge of soft-deleted data.

Sign up for Zep’s Newsletter

Writings on Zep, LLMs, and AI ecosystem tools.

No spam. Unsubscribe anytime.