A secure runtime for every integration
Magic Network is the secure runtime your integrations run on. Every provider runs in its own isolated enclave with only the network access it needs, secrets stay in a managed vault backed by KMS, and you can run across multiple regions or on-prem.

Magic Network
Every integration runs in a controlled environment
Connecting agents to sensitive systems means running integration code close to your data. Magic Network keeps that contained: every provider runs in its own isolated enclave with only the network access it needs, and secrets stay in a managed vault so nothing sensitive ever reaches the model.
- 01
Seal every provider in its own enclave.
Each integration runs inside an isolated enclave with its own runtime boundary, so one provider can never reach another or the rest of your infrastructure.
- 02
Give each integration only the access it needs.
Custom networking and firewall rules limit what every provider can reach, and credentials are resolved from a managed vault so they never reach the model.
- 03
Run it where compliance requires.
Run integrations across multiple regions or fully on-prem, so data stays where your security and compliance teams need it.
What Magic Network provides
Isolation, networking, and secrets in one runtime
Magic Network combines the building blocks that keep every integration contained and controlled.
Isolated by default
Controlled traffic
Built for production
Secure where it matters
- Providers isolated in their own enclaveEvery one
- Secrets held in a KMS-backed vault100%
- Credentials that reach the modelZero
- Deployment across regions and on-premMulti-region
Isolate every provider. Control every connection. Vault every secret. Run it where compliance requires.
FAQ
Answers to common questions about magic network and how they fit into governed AI agent infrastructure.
What is Magic Network?
Magic Network is the secure runtime for AI integrations on Metorial. Every provider runs in an isolated enclave with controlled networking, firewall rules, and a managed vault for secrets, so agents can connect to sensitive systems under full security control.How is network access controlled?
Every enclave gets only the network access it needs. Firewall rules limit outbound traffic per provider, so an integration can reach the systems it depends on and nothing else.Can Magic Network run on-prem or in a specific region?
Yes. Integrations can run across multiple regions or fully on-prem, so data stays in the environment your security and compliance teams require.