Skip to content

Know when a document reaches AI. Invisible to everyone but you.

Hide a signal inside any document — completely invisible to employees. The moment it reaches an AI, the model reports it back. Works on every AI tool, out of the box.

  • Invisible to Employees
  • Your Data Stays With You
  • No Code Required
  • 5-Minute Setup
The Method

The document reports itself.

Four beats, start to finish. No agent on employee devices, no proxy in front of every AI tool.

  1. 01Embed

    Paste any document into Ooko. We return a tracked copy with an invisible TRK-XXXX baked into the text — character-for-character identical to the original.

  2. 02Share

    Ship the copy through normal channels — email, Slack, Drive, GitHub. Nobody notices; the payload rides along in invisible encoding.

  3. 03Paste

    Some day, someone pastes it into ChatGPT, Claude, or Gemini. The canary survives clipboards and sanitizers without a dent.

  4. 04Catch

    The model surfaces SECURITY_FLAG: TRK-XXXX in its reply. You know which document, which tracker, when it moved.

The Gap

Three leaks this week. Zero alerts in your DLP.

  • Board deckChatGPT

    Pasted to soften the tone before a Monday all-hands.

    invisible to DLP
  • NDA-protected specClaude

    Pasted by a contractor to spin up their internal wiki.

    invisible to DLP
  • Rejection letterGemini

    Pasted to rewrite the close — salary offer in tow.

    invisible to DLP

No upload. No email. No file transfer. The AI channel isn't a door — it's a window your perimeter never learned to watch. Ooko puts the trip-wire inside the document itself.

Field Reports
Anonymized / under NDA
  • Within an hour of sharing the first tracked copy, ChatGPT echoed the tracker back. Our DLP had seen nothing.
    CISO180-person fintech
  • It is the only tool that tells us which document reached an AI — not just that it might have happened.
    IR Leadhealthcare SaaS
  • Four minutes to set up, zero changes to our stack. We finally know which documents are reaching AI tools.
    SecOps Managerregional bank
FAQ

Common questions.

Straight answers to what your security team will ask.

Isn't DLP already handling this?
DLP watches doors. The AI channel is a window — no upload, no email, no file transfer. Just an employee pressing Ctrl+V in a browser tab, invisible to every rule you've written. Ooko takes a different angle: it hides a signal inside your document so the AI reports itself when it reads one. No channel to monitor. The model does the confessing.
What does a tracked copy actually look like?
Identical to the original. Character for character, to any human eye. The difference is buried in invisible encoding that AI models read as an embedded canary. When that document reaches an AI, the model surfaces a tracker ID in its response: SECURITY_FLAG: TRK-XXXX. That's your signal. That's your evidence.
How do I actually catch a leak?
Search your AI conversation logs — or pipe them into your SIEM — and look for SECURITY_FLAG: TRK-XXXX. When it surfaces, Ooko tells you which document, which tracker, and when. Manual today. Automated detection is next on the roadmap.
Can an employee find or strip it out?
No. The signal is invisible in every text editor, email client, PDF viewer, and browser. It survives copy-paste and clipboard sanitizers. The document looks untouched because, to a human, it is.
Does Ooko read our documents?
Every customer's data is isolated at the row level with Postgres RLS. It never leaves your own database project. No third-party transmission. Full data map on the security page.
What does it cost?
$39 a month. One team, everything included, seven days free. Cancel any time — your trackers stay live through the end of your billing cycle, then go dark.
Pricing / Single Tier

Simple, transparent pricing.

No seat limits, no usage caps, no surprises.
One plan. Track unlimited documents.

Everything included

  • Know when a doc reaches AI
  • Every AI tool covered
  • Unlimited documents
  • Proof, not guesses
  • Nothing on employee devices
  • One price, whole team
  • Full audit trail
  • Cancel anytime
  • 4-minute setup
  • Per-tenant RLS