PRESS RELEASE

Mate Introduces Gamebooks as a Structured Investigation Layer for AI Agents

New York, USA, August 26th, 2026, FinanceWire


Three architectural pieces now sit at the center of Mate Security's approach to agentic cyber defense. The Security Context Graph captures organizational context as a foundation for agent reasoning. The Continuous Detection / Continuous Response framework binds detection, investigation, and response into one loop. The third piece arrived this week with the launch of Mate Security's Gamebooks, first reported by SiliconANGLE, and it addresses the question the first two left open: how an AI system can follow the way an organization investigates without collapsing that methodology back into a rigid workflow.

Intent Above Execution

The technical core of Gamebooks is a separation. Investigative intent lives in one layer. Execution lives in another.

A Gamebook specifies what must be investigated, what evidence must be established, which conditions should redirect the investigation, which actions are permitted, and the points at which an agent must escalate, stop, or request approval. It does not specify a route. The agent determines how to proceed based on evidence it surfaces and on the organization's most current context.

That separation is what makes the investigation logic portable. Nothing in a Gamebook ties itself to a specific tool, a specific API, or a predefined execution path.

How the Stack Resolves a Live Investigation

Mate Security assigns each layer of its architecture a defined job.

The orchestrator reads the investigation and composes the right Gamebooks for the circumstances at hand. Gamebooks supply investigative intent, required evidence, and boundaries. Capabilities provide agents with reusable, vendor-neutral security skills. Agents apply those capabilities dynamically as evidence emerges. The Security Context Graph holds shared state and the organization's most current context so that reasoning stays grounded. Flows form the controlled execution layer, defining exactly how agents touch specific tools and systems.

The practical result is that agents work with real reach while system access remains governed. Intent stays consistent. Execution flexes.

Why Structure Matters at Machine Speed

Mate's argument for the design rests on the stakes attached to security actions. Accuracy in the region of 90 percent still leaves room for an agent to disable a legitimate account, revoke an executive's access, or shut down a critical production system. Security teams need the answer to be right.

A common safeguard has been to hold agents behind human approval. Mate notes the tradeoff involved. An agent waiting for approval cannot defend at machine speed, and AI-driven attacks operate continuously, in parallel, and adapt as defenders respond. The company cites the recent Hugging Face incident as evidence of how that pace works in practice. Containment approved after the fact may land on an attack that has already moved.

Mate reframes the problem as controlled autonomy. Agents reason, pivot, and act. They do so inside the organization's methodology, policies, and guardrails.

Deterministic Where It Matters

Security teams have long used playbooks to automate investigation procedures. Investigations, however, have rarely followed a script. Threats shift. Environments shift. Security stacks and business processes shift with them.

AI SOC agents brought adaptive reasoning to the problem. Mate's read is that reasoning alone needs structured procedures and clear rules alongside it for teams to extend real access and real actions with confidence. The company's conclusion is that the answer is architectural rather than a matter of better scripts or larger models.

Gamebooks land on a middle position that Mate describes as deterministic where it matters and dynamic where it helps.

Continuity Through Stack Changes

The layered design pays off most visibly when the environment underneath an investigation changes.

Organizations replace security tools. Acquisitions introduce entirely different stacks. Vendors add new alert types. Experienced analysts move on. Each of those events would traditionally trigger workflow rebuilds.

With Gamebooks, the investigative intent remains intact while execution adapts. The same Gamebook keeps operating through a tool replacement or an acquisition. Analyst departures are absorbed differently: the Security Context Graph preserves previous decisions along with the reasoning and context behind them, so institutional knowledge stays available to the agents doing the work.

Extending the Model

Organizations can extend Gamebooks to match their own processes, tools, and institutional knowledge. Existing playbooks can be translated into investigative intent. Gamebooks designed by Mate's security experts can be extended with organization-specific requirements. Proprietary tools and data connect in. New investigation procedures can be defined in natural language.

Mate retains ownership of the agent engineering, evaluations, testing, and execution beneath all of it. As models, tools, and environments change, Mate validates and evolves the system while customer investigation logic and customizations remain in place. Organizations define how they investigate. Mate keeps the agents executing it reliably.

Feeding the Loop

Gamebooks contribute to the Continuous Detection / Continuous Response cycle rather than sitting beside it. Every investigation adds evidence, relationships, outcomes, and reasoning to the Security Context Graph. Useful investigation patterns can improve capabilities, update Gamebooks, or become new detections. Noisy detections can be tuned against real investigation results. Mate describes the effect as a compounding cyber defense system.

"AI is changing the speed and scale of both attack and defense, but security teams cannot trade control for speed," said Oren Saban, Co-Founder and Chief Product Officer at Mate. "The shift to agentic investigations requires a different architecture, one that gives AI the freedom to reason and adapt while keeping it grounded in how each organization actually investigates. Gamebooks give agents that structure, so organizations can move toward autonomous security operations without giving up trust."

Gamebooks are generally available as part of the Mate platform. Mate will showcase the capability at CrowdStrike Fal.Con 2026.



Contact
Editorial Team
editorial@tvc.partners


Disclaimer. This is a paid press release.