Notice threats before they cause damage
Talons watches the protections, exposed services, permissions, and projects that matter instead of waiting for a known malware signature.
AI CYBERDEFENSE FOR THE MACHINES YOU DEPEND ON.
Antivirus and a firewall still matter. They are no longer the whole job. Talons adds ongoing monitoring, practical hardening, and AI-assisted investigation when you ask for it—so weak points get closed, suspicious changes get attention, and you are not left to respond alone.
START PROTECTING YOUR MACHINE
Use the Mac app for desktop setup, or the Linux service and CLI for a server or headless machine. You choose what Talons can inspect, what must ask first, and what is never allowed.
The signed Mac app gives you a native desktop interface. Linux runs as a headless service with a command-line interface; there is no Linux desktop app yet.
Download Talons for MacStart with monitoring, then set plain-language policies for tools and folders: Always available, Ask first, or Never. You can tighten, broaden, or revoke access later.
Connect the Talons GPT for investigation and guided response. Your machine still checks every request against its current policy, and a connection can be revoked at any time.
Open Talons in ChatGPTTHE MISSING LAYERS
Talons watches the protections, exposed services, permissions, and projects that matter instead of waiting for a known malware signature.
Turn findings into practical hardening: understand the gap, review the plan, and remove the weakness before it becomes an incident.
See the evidence and likely impact in plain language, so real risks get attention without turning every change into an alarm.
When Talons alerts you, bring in a Talons agent to investigate and guide a response using the exact tools and access you approve.
Inspect approved code workspaces for vulnerable dependencies, risky configuration, and software-package warning signs before they reach production.
Apply source-backed lessons from vulnerabilities and attacks to the machines and software you actually use.
WHY NOW
Built-in protections still matter. Keep them on. But modern attacks also exploit configuration drift, exposed services, risky dependencies, weak permissions, and the time between a warning and a response. Talons is the layer that keeps looking across that gap.
Attackers are already using AI to make reconnaissance, deception, and intrusion faster and cheaper. The FBI recorded nearly $21 billion in reported cyber-enabled losses in 2025, while the UK NCSC expects AI to increase the frequency and intensity of cyber threats. Your defense should become more capable too—without pretending any product can promise perfect safety.
FREE TO USE
Talons is currently donation-funded because better cyberdefense benefits all of us. Every machine that is harder to exploit is one less resource for attackers—and one less node in the botnets everyone else has to face.
When users choose to share what they learn from an attack or vulnerability, Talons can turn that experience into better guidance for everyone. More users can mean more capability and better defense per user. We will keep the service free for as long as we can afford to.
CAPABLE, WITH BOUNDARIES
Talons is designed to be useful without becoming another uncontrolled risk. You decide what it can see, which tools it can use, where it can operate, and when it must ask again.
The online service can carry a request, but the installed agent decides whether it is allowed and can stop access immediately.
Set defaults and folder-specific rules for each capability: Always available, Ask first, or Never. Broader access is explicit, not implied.
Talons shows the plan, records what was requested and what happened, and preserves the receipt behind important decisions.
Disconnect an assistant, revoke a remembered permission, or stop a broader mode without waiting for an online service to agree.
ONE DEFENSE, WHERE YOU NEED IT
The installed agent owns local protection on both platforms. Use the native Mac app, a headless Linux service and CLI, or optionally bring in the Talons GPT for conversation and guided response.
See protection, policies, security tools, private notes, device status, and activity in a native desktop interface.
Run the same local agent on a headless Linux machine and manage it from the command line. A Linux desktop app is not available yet.
Download for LinuxDescribe the problem normally and let Talons explain evidence, request the exact tools it needs, and walk through decisions.
PLAIN ANSWERS
Yes—and you should keep it enabled. Built-in protections and antivirus are good at blocking known bad software and unwanted connections. Talons adds the monitoring, hardening, investigation, and response layer around them.
The native desktop app supports Apple-silicon Macs running macOS 14 or newer. The Linux pre-alpha is a headless service and command-line interface for x86-64 systemd machines; it does not include a Linux desktop app yet.
No. Local monitoring and the command line work without ChatGPT. If you prefer conversation, you can use Talons in ChatGPT with a signed-in free account within that plan’s usage limits.
The local app can keep background checks on and record a local summary of what it sees. Talons does not investigate on its own or make repairs while you are away; those steps happen when you are present and approve them.
Not yet. Talons can monitor your machine and alert you; once you are present, you can bring in the Talons GPT to investigate and guide a response using the permissions you approve. Automatically starting incident response from a trigger is a stated goal, but the current alpha will not begin that work on its own.
Talons runs a limited set of background checks instead of constantly scanning every file. The app shows whether monitoring is on and lets you pause it. We will publish measured performance data as the alpha grows.
Checks and repairs run in the installed Talons app. The online service receives only the results, task details, and action records needed to coordinate the work you requested. Read the Privacy page for the current data map and retention choices.
Yes. Notes are private context for a specific device. They stay on that machine, are not mixed with monitoring data, and are not sent to ChatGPT unless you explicitly export a local file.
A finding is evidence to review, not a guarantee. Talons should explain why something looks risky, distinguish an observation from a conclusion, and ask before an ordinary repair changes your machine. You can stop access at any time.
No. Keep the protections you already trust enabled. Talons fills a different gap: ongoing monitoring, assessment, hardening, project inspection, and AI-assisted investigation when you decide something needs attention.
The current alpha is free: local monitoring, defensive assessment, explanations, signed updates, permission-bound hardening, and user-initiated help from the Talons GPT. Donations are optional. We intend to keep the service free for as long as funding allows; autonomous incident response is a long-term goal, not a paid service currently offered or promised.
Install the free Mac alpha, or run the Linux service and CLI on your server. Start with monitoring. When Talons alerts you, bring in the GPT to investigate and respond.