Grow Governed. Scale agents. Stay compliant.

The governed agentic platform for banks.

Accelerate business value from agentic AI — without governance shortcuts or added risk, and with every stakeholder's needs answered.

Agentic estate · production review
AGENT-0417 · AML alert triage Tier 1 · Governed
Identity & accessbound · least privilege
Data scopecataloged fields only
Policy & approvalhuman gate where required
Testing & assuranceregression passed
Monitoring & kill switchlive · armed
Evidence trail1,204 leaves on record
Approved for production Illustrative
The opportunity

What agentic workflows make possible at a bank.

Agents are suited to the work banks have the most of: high-volume, evidence-heavy workflows that run on judgment applied to well-governed data. Applied well, they compress hours of assembly into minutes, lift consistency, meet regulatory clocks, keep the banker in the relationship — and open capabilities that weren't practical to staff. The value rolls up to what an executive team runs the program by: time and cost saved, revenue accelerated, customer experience improved, risk reduced, and operating capacity added. Five places it shows up:

Compliance productivity
AML alert triage
Outcome · Time & cost

An agent gathers the context an analyst assembles by hand, proposes a disposition with its reasoning, and drafts the write-up — compressing repetitive hours while every action stays on the record.

Revenue velocity
Commercial credit memos
Outcome · Revenue growth

Underwriting packages assembled faster and more consistently, freeing bankers and credit officers for judgment — and moving the customer's answer up.

Service under a regulatory clock
Dispute & fraud triage
Outcome · Customer experience

Reg E and Reg Z timelines don't wait. Fast, consistent triage improves compliance and customer experience in the same motion — and the customer still hears from their banker, not a bot.

New operating capability
Sanctions screening · false-positive clearance
Outcome · Operating capacity

Where ground truth is clean and evidence accumulates, an agent can earn genuine autonomy on the routine share of the work — capacity a bank couldn't practically staff its way to.

Risk, reduced
Across the estate
Outcome · Risk reduction

Applied correctly, agents strengthen the controls a bank already lives by: access scoped to task, data cataloged, decisions evidenced. A claim we hold to proof below.

The gap

The value is easy to prove. Production is hard to reach.

Each of the opportunities above demonstrates quickly: a working proof of concept — a POC — makes the case in weeks. The summary is persuasive, the connections work, the workflow runs. And that is where many bank pilots stop, because between a POC and production stands governance — risk, security, and audit see too much unanswered. Agents belong in the same discipline as the application and model estates — inventoried, owned, tested, explainable to every owner who signs, with costs attributed. Left ungoverned, they take a different path banks know well: End User Computing — useful tools that spread faster than oversight, until accounting for them became a program of its own. Production sign-off means establishing four things a demo never shows:

Plant
Own

Inventoried with an accountable owner, an intended use, a risk tier, and defined human oversight.

Wall
Protect

Bound identity and least-privilege access; policy-shaped data — permitted fields, sources, regions; controlled actions.

Greenhouse
Validate

Tested on business and edge scenarios before release, and re-tested on every change — regression is continuous.

Leaves
Prove

End-to-end trace and audit-ready evidence; risk, control, and cost measured — not asserted.

Governed, agents join the application estate. Ungoverned, they become the next End User Computing.

40%+
of agentic AI projects projected to be cancelled by 2027, with inadequate risk controls among the named causes.
Gartner, 2025
1 in 20
enterprise AI pilots reaches production. The gap between a demo and a deployment is governance, not intelligence.
Directional · MIT NANDA, 2025
How we engage

We build your capability, not a dependency.

Crossing the gate from POC to production is the work we've built our company around. We work with the estate you have — integrating what's strong, elevating what's needed, and introducing only what's missing. The first workflows are built with us on the Garden Leaves platform; when we step back, the skills and the operating model stay with your teams — and they keep building governed workflows on the platform.

01
Orient
A shared agentic operating model for bankers, operations, developers — and the C-suite.
02
Deploy
The platform, connected to your stack: your IAM, your data and catalog, your gates.
03
Realize
Co-build and operationalize the first governed workflows on the platform, validated in-bank.
04
Empower
The know-how stays — reusable patterns, runbooks, and trained teams. You build the next workflows yourselves, on the platform.
The platform

What the platform does.

The Garden Leaves platform is our product and the center of the engagement: author and govern agents through one control plane, then deploy them to any cloud, private, or on-prem runtime — with bank-grade identity, data controls, and end-to-end trace built in. Open by design: your selected models, tools, and runtimes, through validated integrations. Its capabilities group into six areas:

Plant

Author

Agents and workflows composed in comprehensive builders, from banking workflow templates, with guardrails built in from the first draft — governance by construction, not retrofit.

Wall

Govern

Identity, data, and tool-call boundaries enforced across every runtime — and an authoritative inventory that answers agent sprawl: every agent, authored or discovered, including your vendors', owned, risk-tiered, and bounded.

Greenhouse

Validate

Automated validation before anything reaches production: scenario and regression testing with LLM-as-a-Judge and Agent-as-Judge, feeding a staged approval pipeline from draft to production sign-off.

Leaves

Assure

Every action produces evidence — an end-to-end trace and audit trail, delivered as sealed audit packets ready for review, that make deployment defensible against SR 11-7, the EU AI Act, and your BSA/AML program.

Garden

Operate

Runtime monitoring, exception handling, incident response, and kill switches — plus the human side of operations: human-in-the-loop approvals where judgment signs, and human-on-the-loop oversight as autonomy is earned.

Yield

Optimize

Cost and value attribution across the estate. Prove the return, defend the spend, and see which agents earn their place.

One estate, many lenses: role-based views for the operator, operations, developers, the CIO, the CRO, audit, and the CFO — the same record, read in each stakeholder's terms.

Deep, portable, and banking-native: governance enforced by construction, carried to any runtime, in the language of the exam — with a record that stays independent of the providers it governs.

See it work

One agent, from discovered to exam-defensible.

Across an estate, the platform's work runs in a sequence a risk organization will recognize: discover, measure, manage, reduce. Here is that sequence for a single agent — an AML alert-triage agent, walked from an ungoverned pilot to a Tier 1 governed agent. Watch the residual risk fall, the controls come into place, and the record an examiner would read write itself.

Specimen · AGENT-0417 · AML alert triage
Tier 5 · Critical
90Residual
risk score
residual = inherent × (1 − control)
10%
Control coverage
None
Human gate
Discovered
Tier 5 · ungoverned

Controls in place
The record — what an examiner sees 0 leaves on record
1 / 5
Risk, by category

Governed automation reduces risk in the estate you already run.

Manual workflows concentrate risk — handoffs, re-keyed data, information moving through inboxes and file shares. Bringing a workflow under governance strengthens the controls a bank already lives by: over data, access, the actions taken, and regulatory reporting. This is the proof behind the claim made in the opportunity above: governed automation is itself a risk-reduction program.

Operational↓ Reduced

One predictable, repeatable workflow replaces manual handoffs and re-keyed data; outcomes are consistent and monitored.

Information security↓ Reduced

Least-privilege access scoped to the task — no broad standing permissions, no data moved without need.

Data governance↓ Reduced

Every field cataloged, classified, and access-controlled through the data catalog — the agent reads only permitted data, with lineage.

Compliance & regulatory↓ Reduced

Evidence produced once, in one place — an exam-ready trail that supports SR 11-7, BSA/AML, and EU AI Act reporting.

Model↓ Reduced

Prompts, models, and thresholds versioned, tested, and monitored in production — decisions validated, not assumed.

Reputational↓ Reduced

Automated testing lifts accuracy and consistency, and a human reviews every release — fewer errors reach the customer.

Risk is reduced and evidenced — never eliminated.
Who we are

Operators who ran the control environments we're building for.

Dmitri Furman
Co-founder & CEO

Former CTO and Global Head of Cloud at the largest U.S. banks, scaling cloud and AI programs within multi-billion-dollar transformations. Deep in the substance of banking — business workflows, core banking systems, infrastructure, and risk management — and in carrying change through risk organizations and regulators. Garden Leaves is that experience, built into a platform.

Michael Drob
Co-founder & CTO

Builder of secure agentic AI systems for highly regulated federal organizations — with governance, auditability, and access control designed in from the start. Earlier, took advanced AI from research into enterprise-scale production at a high-growth technology company. Brings that same standard of operational trust and control to financial institutions.

The firms that win the agent era will be the ones that can show, on demand, every agent in their estate — who approved it, who owns it, what it did, and why — well before a regulator or a board asks.

The invitation

We're taking a small number of design partners.

We're looking for banks ready to accelerate business value from agentic AI — without governance shortcuts or added risk, and with every stakeholder's needs answered along the way. You help us shape the platform around real workflows — with your risk and compliance teams at the table from day one — and in return get first access, influence over the roadmap, preferred commercial terms, a governed path to production for your workflows — and an operating model your teams keep.

In a first working session, we agree together
One workflowNamed ownersControls in scopeToday's baselineThe production gatesThe autonomy boundaryGo / no-go