May 2026 · APRI™ 1.0

AI-Powered Risk Intelligence.
Same data, new insights.

Internally, we call it Titanium. You'll know it as the part of vCISO Lite that connects your risks, vendors, and compliance posture — and runs the next step on your say-so. Close gaps, resolve incidents, decide with the numbers in front of you. On your terms.

35+
MCP tools live
2
Services in APRI™
Workflows you compose
22Engagement
Ti
TitaniumDoes the work
The shift

vCISO Lite has always surfaced what matters. APRI takes the work from there.

For every framework, every vendor, every scan — vCISO Lite has been finding the gaps, surfacing the risks, and showing you what to act on. Interpreting the results, drafting the response, running the next step — that's been your lion's share. APRI™ takes it on. You make the calls. We do the math.

The data was always there.
The work doesn't have to be.
APRI™ · How it works

One brain. The right tools. Every time.

APRI™ is the agent inside vCISO Lite. Under the hood: an apri-gateway that owns sessions, authorization, and audit, and an MCP server that owns the 35+ tools APRI™ can call. You ask. It parses your intent, picks the tools that fit your role and your data, runs them in the right order, and streams the result back with full citations.

Tool-aware routing. APRI™ sees the 35+ MCP tools as a capability graph — not a flat menu.
Entitlement-aware. The tools APRI™ can pick from depend on your role and your plan — no privilege escalation through the agent.
Composable. Multi-step workflows are first-class.APRI™ plans, executes, and adapts when steps return unexpected results.
Workflows · Tools with hands

Ask in plain English. Get a finished deliverable.

A handful of the workflows APRI™ runs today. Every one of these used to be a half-day of clicking. Now they're an ask.

9:47 AM · TUESDAY

A 200-question vendor questionnaire from a Fortune 500 prospect lands in your inbox. Due Friday.

Before APRI™

You're the connector: draft in vCISO Lite, attach the evidence, package the export, write the email, send it, track the follow-ups.

With APRI™

“Respond to this.” APRI™ imports the questionnaire, drafts the answers, attaches the cited evidence, re-checks each answer against its citations, and packages the export. You approve. APRI™ sends it. The deal stays on the calendar.

Respond to this 200-question vendor questionnaire by Friday.
1Parse the questionnaire and map every item to a control
2Pull current posture from scanners and policies
3Draft answers with cited evidence and flag the unknowns
Generate the Q4 board update with our current security posture.
1Pull scan trends, finding severity, and policy coverage
2Compose a board-grade narrative with maturity deltas
3Render a one-page PDF and a presenter version
Build a remediation plan for last week's scan findings.
1Group findings by root cause and blast radius
2Rank by exploitability and audit deadline impact
3Open issues in Linear with owners and ETAs
Draft a SOC 2 readiness summary for our auditor.
1Map current evidence to each Trust Service Criterion
2Highlight gaps and last-30-day improvements
3Export an auditor-ready PDF with evidence links
Refresh vendor risk scoring across our SaaS stack.
1Pull current SOC 2 / ISO statuses and incident history
2Re-score each vendor against your risk policy
3Surface tier changes and propose offboardings
Assemble the data room for this acquirer.
1Build the cross-framework evidence pack
2Snapshot scans, policies, and questionnaire history
3Provision a scoped, watermarked viewing room
Trust by construction

Agents that respect the rules you already set.

APRI™ inherits every guardrail vCISO Lite enforces. No shadow accounts, no broad service tokens, no silent writes.

Scoped to what you can see

APRI™ uses your entitlements, not a service account. If a user can't see a record, neither can the agent acting on their behalf.

Every action recorded

Each tool call, parameter, and result lands in the audit trail. Replayable, exportable, and addressable for your auditor.

Observe-first by default

Read-only by design. Writes and irreversible actions go through a confirmation gate — agents never publish, send, or change without a human.

For developers

APRI is a public MCP, too. Wire it into your own stack.

Same agent, same authorization model, same audit trail — exposed as a Model Context Protocol server. Connect APRI™ to Claude, Cursor, your own agent, or any client that speaks MCP. Same Enterprise plan, no new contract.

$# Add APRI™ to Claude Code
claude mcp add --transport http apri https://mcp.vcisolite.com/mcp

# …or install the plugin — adds /vciso-lite:risk-readiness + /vciso-lite:posture
claude plugin marketplace add vciso-lite/claude-plugin
claude plugin install vciso-lite@vciso-lite

# Claude.ai — Settings → Connectors → Add custom → https://mcp.vcisolite.com
# Cursor    — Settings → MCP Servers → Add → https://mcp.vcisolite.com/mcp
How it fits

An engagement layer, not a rebuild.

APRI™ sits on top of the vCISO Lite capabilities you already have. Same data sources, same controls, same evidence trail — orchestrated.

YouOperators, founders, board membersPlain-English asks · No tab juggling
APRI™apri-gateway · MCP server · 35+ toolsRoutes, executes, composes, audits
vCISO LiteVendor risk · Scanners · Policies · Reporting · Due diligenceThe capability set APRI™ operates
Your stackGitHub · Cloud · Identity · SaaS · DocumentsThe systems vCISO Lite reads from

APRI is available in vCISO Lite on the Enterprise tier.