Skip to content

Compatibility

Four statuses. No silent green.

Buyers run different Linux distributions, agent frameworks, SDKs, model providers, containers, and clouds. Each row says how we found out, and what that status means.

Right now 4 combinations are Supported for self-serve Optics wrap paths, and 4 Phantom Engine / Enterprise combinations are Proven in Vantio testing. Design-partner validation rows stay empty until a partner completes the Stranger Host Standard.

Supported. Public install path. Expected behavior you can check yourself.

Proven in Vantio testing. We ran it. A stranger-host pass has not been recorded.

Design-partner validation. Filled when a partner completes the standard on their host.

Not supported / not yet tested. Do not plan on it. Named residuals stay named.

Node on macOS, Linux, or Windows WSL — vantio run

Plane
Optics
Status
Supported
Install path
npm i -g @vantio/cli, then vantio run --summary node agent.js
Limitation
Browser paths stay outside this wrap. Raw sockets that never enter the wrap are not recorded.

Python — vantio-agent-sdk

Plane
Optics
Status
Supported
Install path
pip install vantio-agent-sdk, then follow the current Python SDK example
Limitation
Do not rely on coverage until a supported outbound event appears. Browser paths stay outside this wrap.

Optics MCP — read-only inspect

Plane
Optics
Status
Supported
Install path
npx -y @vantio/optics-mcp in a local MCP client
Limitation
Observe-only. Not a tool-call gateway and not enforce-plane policy.

Phantom Engine Enforce plane on the same wrap

Plane
Phantom Engine
Status
Supported
Install path
Contact Vantio at hello@vantio.ai. After you have a key, vantio login, then vantio run.
Limitation
Application-path enforcement cannot act on traffic that never entered the wrap. Browser and Chromium paths stay outside. Public card checkout is not live. Gate is not a current SKU. Enforce is a technical plane inside Phantom Engine.

Enforce plane on a Phantom Engine node

Plane
Phantom Engine
Status
Proven in Vantio testing
Install path
Customer package on Linux you enroll. Enforce on that node is included in the Phantom Engine purchase.
Limitation
Proven in Vantio testing on a company-operated host. A completed Stranger Host Standard pass has not been recorded.

Phantom Engine Linux daemon — bare metal or VM

Plane
Phantom Engine
Status
Proven in Vantio testing
Install path
Customer package / Linux daemon on a host you enroll. Contact Vantio.
Limitation
Linux you enroll only. Not Windows or macOS Control. Proven in Vantio testing — not yet a recorded stranger-host pass.

Phantom Engine Kubernetes DaemonSet (Helm)

Plane
Phantom Engine
Status
Proven in Vantio testing
Install path
Helm 3 on a cluster you operate, Control chart plus on-prem enforce companion. You bring Helm.
Limitation
Multi-pod auto-attach across every cluster pattern is still open. Stranger-host pass is Open. You bring Helm 3.

Enterprise evidence, audit, dual-control

Plane
Enterprise
Status
Proven in Vantio testing
Install path
Same Phantom Engine install, governance depth on that node. Contact Vantio.
Limitation
Formal certifications are not held. A completed Stranger Host Standard pass has not been recorded.

Browser, Chromium, or headless CDP traffic

Plane
Suite
Status
Not supported / not yet tested
Install path
Not on the Optics wrap.
Limitation
Named residual. Do not treat a browser path as application-path enforcement coverage.

Windows or macOS Phantom Engine Control

Plane
Phantom Engine
Status
Not supported / not yet tested
Install path
Not offered. Optics can still wrap on those OSes.
Limitation
Control is Linux you enroll.

Microsoft Entra, Okta, or CyberArk identity consumed by Phantom Engine

Plane
Suite
Status
Not supported / not yet tested
Install path
Not offered as a product path today. Identity systems say who; Vantio enforces where the agent runs.
Limitation
Vantio does not replace Entra, Okta, or CyberArk. Mapping, owner, short-lived credentials, and identity-linked evidence are named gaps.

Allow / deny / redact on MCP tool calls

Plane
Phantom Engine
Status
Not supported / not yet tested
Install path
Not offered as a product path today. Optics MCP is read-only inspect.
Limitation
This is not a standalone MCP gateway product. Host Control remains the backstop.

Design-partner validation on a customer-controlled host

Plane
Suite
Status
Design-partner validation
Install path
Design-partner program at /docs/design-partners. No partners are enrolled yet.
Limitation
Strategic recommendation only. This row is empty until a partner completes the standard.

For every Supported combination

You get an install path, expected behavior, a test procedure, known limitations, rollback, and the evidence that run generates. Expand a row in the table, or read the matching steps in the install manual.

Node on macOS, Linux, or Windows WSL — vantio run

Expected behavior
Supported fetch, undici, http/https, http2, net/tls, WebSocket, and spawned curl or wget calls are recorded as OBSERVED. Prompts and completions are not stored. Nothing is blocked.
Test procedure
Wrap a process that calls a listed model API. Confirm vantio prove --list top row matches that run.
Rollback
Stop prefixing vantio run. Uninstall the CLI if you want it gone.
Evidence generated
Local run log under ~/.vantio/runs/ and vantio prove output.

Python — vantio-agent-sdk

Expected behavior
Python support requires vantio-agent-sdk. Follow the current Python SDK example and verify that a supported outbound event appears before relying on the coverage state.
Test procedure
Install the SDK on that interpreter, run the current Python SDK example against a listed model API, confirm a new run log.
Rollback
Stop wrapping. pip uninstall vantio-agent-sdk if you want the library gone.
Evidence generated
Local run log and vantio prove output.

Optics MCP — read-only inspect

Expected behavior
List runs, export proofs, and discover hosts from local Optics logs. It does not block, redact, or enforce.
Test procedure
Paste the MCP config from /docs, list runs, export one proof.
Rollback
Remove the MCP server from the client config.
Evidence generated
The same local run logs Optics already wrote.

Phantom Engine Enforce plane on the same wrap

Expected behavior
Destination controls, redaction, and spend limits apply to traffic the wrap sees. Dry-run previews decisions before enforce is on.
Test procedure
Preview a rule on live traffic, then turn it on for one path you marked. Confirm ALLOWED, BLOCKED, or REDACTED — not OBSERVED-only.
Rollback
Return the policy to dry-run or observe-only. Stop wrapping to leave the path.
Evidence generated
Enforce trail for live decisions. Residual-risk with demo seeds off names live gaps.