AIToday
Large Language ModelsAI Safety & AlignmentAI Business & IndustryWIRED AIPublished: Sep 28, 2026, 19:00 JST

Nvidia opens OpenShell to all, adds Sentry for AI agents

Nvidia opens OpenShell to all, adds Sentry for AI agents

3 Key Points

  1. What happened

    Nvidia put its OpenShell containment sandbox into general release for all users and introduced Sentry, a monitoring security domain for its Bluefield data processing units, under a new Open Agent Safety Platform.

  2. Why it matters

    Nvidia's launch materials list AI security collaborations with dozens of tech companies including Anthropic, Microsoft and JPMorganChase, suggesting the chipmaker is positioning itself to set security standards across the AI stack.

  3. What to watch

    It is unclear whether OpenShell has been adopted by Nvidia's full list of partners, and OpenAI, which both companies said is part of the effort, was left off the announcement list.

WHO IT HITSEnterprise security and IT teams running fleets of AI agents get a new option for containing and monitoring them, while the dozens of named partners weigh whether to integrate OpenShell.

Not sure about something? Ask the AI

Questions and answers are published on this page.

Summaries like this, in your inbox every morning.

Context & Analysis

Nvidia's move comes after months of disclosures from frontier AI labs about agents hacking into other companies and probing official US and Australian government websites. Nvidia already had an agent security sandbox, OpenShell, announced at its GTC Conference in March, and in July it launched an industry-wide AI safety coalition that now comprises more than 120 companies, with a program called the Shared AI Findings Exchange (SAFE) intended to be governed independently. The new Open Agent Safety Platform wraps OpenShell and Sentry together, and Nvidia says it is working with Arm and Intel to make Sentry run on the x86 chip architecture, which would let it run on any architecture.

Nvidia's list of collaborators spans chip, cloud, security and enterprise names such as Anthropic, Cisco, CoreWeave, CrowdStrike, Dell Technologies, Hugging Face, JPMorganChase, Mistral, Microsoft and Palantir. Nvidia says SpaceXAI is using the Open Agent Safety Platform for its Cursor agents and Grok models, and that Anthropic and Nvidia are building security into Claude Managed Agents, while Salesforce, Scale AI and SAP are integrating OpenShell to some degree. OpenAI's absence from the announcement, despite both companies saying it is part of the effort, leaves the scope of adoption unclear.

Nvidia frames the tools as a way to give security teams collective policy over fleets of agents. Justin Boitano, Nvidia's vice president and general manager of enterprise computing, says agents are very creative at finding ways to achieve their goals, and that with this, agents only have access to the intent the security team wants them to have. The test is likely to be whether the named partners actually deploy OpenShell and Sentry rather than simply appear on a list, and how quickly Sentry reaches x86 chips through the Arm and Intel work.

FAQ
What is OpenShell and when did it first appear?
OpenShell is an Nvidia security sandbox that contains AI agents and isolates their activity in the operating system kernel. It was first announced at Nvidia's annual GTC Conference in March.
How does Sentry differ from OpenShell?
Sentry is a separate security domain for chips that continuously monitors long-running AI agents and can quarantine agents that attempt to move outside their boundaries. It is meant to be implemented on Bluefield, Nvidia's line of programmable data processing units.
Does OpenAI use Nvidia's OpenShell?
Both companies indicated OpenAI is part of Nvidia's OpenShell effort, but both declined to comment on why it was excluded from the announcement list.

Get the latest Large Language Models news every morning

For example, today's edition would include:

  • Nvidia's DGX Spark push: 'Data centers in the house'DIGITIMES Asia · 1h ago
  • Google adds Live Avatar to Gemini 3.8 Live, live in Gemini EnterpriseAI Watch (Impress) · 1h ago
  • Julia 1 matches Jev on 73.15% benchmark, loses 87% vs 61%Qiita 機械学習 · 1h ago

AI-summarized, only the topics you pick: one digest a day via Email, LINE, or Slack.

Free · 30 seconds with Google · unsubscribe anytimeWhat is AIToday? →

Ask AI

Ask AI anything about this article. The AI reads this article, earlier AIToday articles, and Wikipedia, and cites its sources. Q&As are published on this page for other readers too.

Questions and answers are published on this page.

Related Articles

Next articleMeta's Muse hit by macOS zero-day security scrutiny