Skip to content
Rush Commerce
AI & Automation3 min read

Falcon Guardian inventories the AI agents on your endpoints

CrowdStrike shipped shadow AI agent discovery and runtime blocking for Windows and macOS. The product is enterprise-priced, but the gap it names is yours too.

Ask your team how many AI agents are running on their laptops right now. You will get a number, and the number will be wrong. That gap is what CrowdStrike put a product on at Fal.Con: Falcon Guardian, announced September 1, discovers and blocks shadow AI agents on Windows and macOS endpoints. Most small studios will never write the check for it. The category it names still applies to you.

What actually happened

CrowdStrike is calling the category AIDR — AI Detection and Response — and Falcon Guardian succeeds its earlier product of that name. Three capabilities ship under it: AI Agent Discovery and Inventory, Agent Runtime Visibility, and Agent Access Controls.

The discovery piece is the interesting one. It enumerates known and shadow agents across managed Windows and macOS machines, running and dormant, and records who deployed each one and what its security status is. Runtime visibility traces an agent from the user's prompt through identity, tools, skills, and the system actions it takes, and feeds that telemetry into Falcon Next-Gen SIEM. Access Controls is an allowlist: administrators declare which agents may run, and unapproved ones get blocked rather than logged after the fact.

George Kurtz framed it as a timing problem: "Governance alone can't stop an agent already in motion."

On availability, SiliconANGLE reports core Guardian features are available now. The AI Gateway that applies Falcon policy to enterprise AI traffic, including MCP, is pre-beta with general availability next quarter. Falcon Complete for Guardian, the managed tier, lands later this quarter. Read that sequence honestly: the inventory ships first because inventory is the part nobody has.

Why shadow AI agents matter for your business

Enterprise security vendors are useful to small businesses as a diagnostic even when the product is out of reach. When CrowdStrike builds discovery before enforcement, it is telling you what their customers asked for. Those customers have CISOs and asset management and they still cannot answer "what agents are running here."

You have the same problem at a smaller scale, and probably a worse ratio. A developer installs a CLI agent to try it. A designer adds an MCP server to Claude Desktop. Somebody wires a Zapier-style automation to an API key that never expires. Each one is a process with your credentials, running commands, reaching the network. None of them appear in a seat license report.

The word dormant in CrowdStrike's inventory is the part worth stealing. An agent that ran twice in June and still holds a token is not idle, it is unattended. That is the same failure mode as the contractor account nobody disabled, except it can act on its own.

You do not need an AIDR platform to close most of this. You need a list. What agents are installed, on whose machine, with which credentials, and who decided to put them there. Then an approval path so the next one lands on the list on purpose. We build that as a one-page register and a rule about API keys, not a platform purchase.

Key takeaways

  • CrowdStrike's Falcon Guardian shipped September 1 with AI agent discovery, runtime visibility and access controls for Windows and macOS
  • Discovery covers dormant agents too, plus who deployed each one — that is the gap the market actually has
  • Access Controls is an allowlist that blocks unapproved agents at runtime, not an alert after execution
  • AI Gateway (including MCP traffic) is pre-beta, GA next quarter; the managed tier lands later this quarter
  • The small-business version costs nothing: an inventory of installed agents, their credentials, and an owner for each

You cannot govern an agent you never wrote down. We audit what is actually running across a small team's machines, kill the credentials nobody owns, and put an approval path in front of the next tool somebody installs. Ask us for an agent inventory or see how we set up automation you can account for.

Sources: CrowdStrike, SiliconANGLE.

  • #shadow-ai
  • #ai-agents
  • #endpoint-security
  • #crowdstrike
  • #governance
TR

Tommy Rush — Founder, Rush Commerce

Operator turned builder. 15+ years running operations — now shipping the systems businesses run on. More

Get The Rush Report weekly — one email, zero fluff.