Two different failures that most vendors sell as one. Rogue is your approved AI doing something it was never approved to do. Drift is your approved AI still doing its job, worse. We report them separately, because the evidence for each is different and pretending otherwise is how honest products stop being honest.
Rogue is a scope question. Did this system talk to a service, a model or a tool that nobody approved? Did it act at three in the morning with no human involved? Did its reach inside your network quietly grow? These are questions about behaviour and destination, and network observation answers them well.
Drift is a quality question. Is the same approved system giving worse answers than it did a month ago? That is a question about content, and content sits inside TLS. A passive sensor can produce strong leading indicators and it can date the moment something changed, but it cannot grade an answer. Any vendor turning packet metadata into a quality score is inventing a number.
So the product does two things instead of one. It reports rogue behaviour as detection, and it reports drift with an explicit statement of how much of the picture is actually available.
All of the following work from observed traffic, with no agent and nothing in your application path. Most of them key off an approved-AI register that you declare once, and which we seed from what is already happening rather than asking you to write an inventory from memory.
Providers roll models without announcing it. If you take one thing from this page: the single most valuable field for answering why did it get worse last Tuesday is the model version, and it comes from your gateway, not from the wire.
This list is deliberately part of the product description rather than something you have to extract from us in a meeting.
We can tell you, with dates, that something about it changed: the endpoint it talks to, the client making the call, the shape and volume of the traffic, sustained across days rather than for one afternoon. Whether the answers got worse is a judgement about content, and content is encrypted. If your AI calls pass through a gateway that exports metadata, that gap closes substantially, because a model version change becomes a fact.
Rogue is your approved AI doing something it was never approved to do, which is a scope and security problem. Drift is your approved AI still doing the approved thing, worse, which is a quality problem. The first is detectable from the network; the second needs the network for indicators and your gateway for certainty.
No, and we would not trust one written from memory anyway. The register is seeded from the AI activity we already observe, and you confirm or correct a draft. Nothing is rejected for being incomplete; a register with three fields is better than none, and the product reports how complete it is.
Because most of it is deliberately silent until it has history. Change detection needs a prior observation, a dormant service needs weeks of silence to qualify, and the baseline needs fourteen daily samples before it asserts anything. That is the design. A product that produced confident AI findings on day one would be making them up.
Tell us whether you suspect something is already inside, or whether you want to measure what your current tools would catch. Either way you get a concrete next step.
Contact us