Swiss-Made by NordfoldIn enterprise production
Network security automation platform

A secure platform where security teams build, deploy and govern their own tooling.

Self-hostedSwiss-builtIn productionSSO & RBAC
kona.internal / apps / violations
Violation Heat Map — Matrix of policy violations from one zone to another.
In production since 2025
AI-native Runtime
Build Integrations with AI
Self-hosted
Multi-tenant
Swiss Made Software
Single Sign-On
Role-Based Access Control
Full audit trails
Any programming language
In production since 2025
AI-native Runtime
Build Integrations with AI
Self-hosted
Multi-tenant
Swiss Made Software
Single Sign-On
Role-Based Access Control
Full audit trails
Any programming language
The problem

The systems are modern.
The processes aren't.

  • Producing a single audit report means logging into five systems, exporting to Excel, and reconciling the results manually. Answering a question as simple as "who owns this rule and when did it last change" takes hours. The data exists — it just doesn't exist in one place.

These are structural problems. They don't get solved with another script or another tool. Kona solves them at the platform level.

The solution

One platform.
Four pillars.

Kona connects your existing systems through one integration layer, runs your automations and custom UIs, and gives every team controlled access with SSO, RBAC, rate-limiting and full audit trails built in.

01

Connect

Firewalls, proxies, ITSM, SIEM, identity providers, cloud — one integration layer.

02

Automate

Build tools that pull, combine and act on data. Any language, existing or new code.

03

Share

Web UIs and REST APIs give other teams exactly the access they need. No ticket.

04

Govern

Granular permissions, multi-tenancy, audit trails — the platform itself.

Security teams often end up stitching together scripts, dashboards and one-off UIs. Kona is the runtime for building real tools instead — safely, together, on top of the systems they already run.
Sebastian Schrepfer
Founder
Architecture

The layer between
your systems and your people.

Your systems stay where they are. Kona connects to them, runs your automations on top of them, and hosts the applications your teams actually use. Everyone accesses those applications through Kona via Web UI, REST API, or automations. No direct connections, no open ports, every request logged.

Kona platform architectureFlow: your infrastructure (firewalls, SIEM, ITSM, identity, cloud) connects through the Integrations gateway into the Kona runtime (Automations, Reports, Visualizations, Governance), then reaches consumers (security teams, network engineers, compliance, auditors, infrastructure teams) via the REST API or Web UI.YOUR INFRASTRUCTURECONSUMERSTHE KONA PLATFORMFirewallSIEMITSMIdentityCloud / ProxyIntegrationsAutomationsReportsVisualizationsGovernanceREST APIWeb UISecurity TeamNetwork EngineersComplianceAuditorsInfra. Teams
Security by default

Security is not a feature.
It's the architecture.

Every request through Kona is authenticated, authorised, and logged. Your infrastructure stays yours. Nothing leaves your environment.

Enterprise SSO, fine-grained RBAC, complete multi-tenant isolation. Every action is scoped to a user, a tenant and a permission — never to a shared credential. Users interact through Kona, not through direct access to your systems.

Self-hosted on your infrastructure. Air-gapped deployments supported. Built in Switzerland under Swiss data protection law.

Every request generates an immutable record with full context. Analyse audit data directly in Kona or export to your SIEM.

Automation runs in its own container perimeter, with no outbound internet. Credentials are centrally managed and never exposed to the code that uses them.

How teams build

Your team builds.
The platform governs it.

Your team builds on Kona using Kona AI Skills — development blueprints that guide engineers through the platform and its integrations, alongside an AI coding assistant.

Engineer prompt
Build me an app that integrates {system A} and {system B} and {performs task} whenever the user {trigger}. The app should contain {UI description}
Company AI
enriched with Kona AI Skills

Kona Platform Skills

ArchitectureFrontend & UIWeb Components

"What components work for this UI?"

Kona Integration Skills

Auth FlowsRate LimitsPaginationObject Models

"How does the Tufin API work?"

WorkflowProcess

Policy Recertification

SAP HRM. Koch
SalesforceS. Brunner
Jenkins CIL. Weber
ConfluenceT. Meier
DashboardMonitor

SOC Portal

fw-core-013 alerts
sw-dmz-021 alert
vpn-gw-03healthy
GovernanceControl

Compliance Validator

Rulefw-corefw-dmz
HTTPS-INallowallow
SSH-MGTdenydeny
TELNETdenyallow
RDP-EXTdenydeny
Kona

Every built service inherits the platform's full security model.

You can build your tooling with or without AI — everything is fully implementable by hand. AI with Skills just helps you ship it faster, if you want.

Explore the Kona platform.

The architecture. The deployment. Where it fits. The thinking behind.