← klaro.services
SentinelConsentraKlaroShieldBundlesPricing

Sentinel FAQ

Questions about how Sentinel's Security Intelligence Platform actually works.

What is Sentinel?
Sentinel is Klaro's Security Intelligence Platform. It continuously correlates evidence from your external attack surface, code, cloud, identity, runtime, AI systems, business logic and compliance controls into a single, explainable Security Confidence score.
How is this different from a vulnerability scanner?
Vulnerability scanning is one of Sentinel's evidence sources, not the whole product. Sentinel's Intelligence Engine correlates that scan output against deploy events, cloud/identity posture changes and compliance drift — a scanner alone can't tell you a finding appeared 6 hours after a specific deploy, or that it's worth reviewing together with a config regression.
What does 'Security Confidence' actually measure?
How much of your security posture Sentinel currently has verifiable evidence for, per domain (external, source control, CI/CD, cloud, identity, runtime, dependency, route reachability) — not a severity score, and never inflated by connectors you haven't added. An honest zero for an unconnected domain is the design, not a bug.
What is the five-state confidence scale?
Every domain and correlated claim is labeled Confirmed, Likely, Potential, Unknown, or Unable to Verify — layered above the percentage bars so you can tell the difference between 'fully evidenced' and 'partially evidenced but real' at a glance.
What is the AI LAM?
Sentinel LAM (Large Action Model) is a Security Research Agent, not an autonomous AI. It continuously studies CVE feeds, GitHub Security Advisories and other public sources, and drafts recommendations for improving Sentinel's own detection logic. Every recommendation is versioned, explainable and reviewed by a human before anything changes — it never deploys anything on its own.
How fast can I get started?
Hours, not weeks. Connect GitHub and/or your cloud provider and Sentinel's Security Confidence score starts building immediately from real evidence — no lengthy onboarding, no mandatory consultant engagement.
What frameworks does Sentinel support?
SOC 2, HIPAA, CMMC / NIST 800-171, ISO 27001, and CIS Controls v8. One control satisfies multiple frameworks at once where the underlying requirement overlaps.
Does Sentinel replace a CISO or a formal audit?
No. Sentinel supports your security posture, visibility and readiness — it is not a SOC replacement, not a penetration-testing service, does not guarantee compliance, and does not replace a CISO or qualified assessor.
How do I know a finding is real and not a false positive?
Every finding has a 'View evidence' drawer showing the raw evidence behind it, the full scan history that detected or cleared it, and every status change — so a severity label is something you can verify yourself, not something you take on faith.
Is pricing based on scan count?
No. Sentinel's tiers (Starter, Growth, Enterprise) are based on depth of Intelligence — which evidence domains, connectors and correlation capabilities are included — not a scan or asset count. See the pricing page for exact inclusions.
Can I try Sentinel before subscribing?
Yes — a one-time free readiness scan is available for every supported framework, no signup required for the scan itself.
Back to Sentinel →How Sentinel compares →Pricing →