akuig Telepath AI

MCP orchestration for telecom AI agents

Give your AI agents live network access. Governed like a telco.

Telepath AI is a secure MCP broker across OSS, BSS, inventory, faults and bare metal. Every agent action is checked against live network context before it reaches your estate.

Telco-grade governance Sovereign by design Vendor neutral
01
Agent layer
Your AI agents and RAG
02 · Telepath AI
Governance · Sovereignty · Audit
Context, policy and audit on every action
03 · Telepath AI
MCP servers
Tool abstraction per domain
04
Open standards
TM Forum APIs and CAMARA extensions
05
Systems of record
Your BSS and OSS estate
Blast radius checked before every action
On-prem by default
Any model. Any network vendor.
Proven in TM Forum Catalyst Telco AEGIS, championed by Telkomsel, Telin, STC and Singtel. Read the case study →

Why MCP

RAG tells your agent what it knows. MCP tells it what is happening now.

LLM + RAG alone

  • Static snapshots, can hallucinate facts
  • No visibility into live customer impact
  • No cross-silo correlation at query time
  • No deterministic way to take action

+ Telepath MCP

  • Real-time state across ENM, BSS, FM and PM
  • Answers grounded in live system data, not model memory
  • Cross-silo correlation in a single call
  • Audit trails, RBAC and on-prem by default

Telco-grade governance

RBAC decides who. Telepath decides whether it is safe right now.

Generic gateways check identity and permissions. In a network, the same command can be harmless on a test cell at 3am and serious on a core router at peak. Telepath enriches every tool call with live telecom context, then evaluates it against policy before anything executes.

Agent request
Context enrichmentBlast radius · SLA tier · maintenance window
Policy decisionCedar, formally verified
AllowRequire approvalDeny
Immutable audit

Blast radius

Every action is scored by the customers, services and network elements it could affect. High-impact actions escalate automatically.

Rate control

Limits on how fast and how often agents can act, per tool, role and domain, so a runaway loop cannot cascade.

SLA awareness

Actions touching premium or regulated customers carry tighter policy than best-effort services.

Change windows

Write actions respect maintenance windows and change freezes, just as your engineers must.

Human approval

Approval gates for anything above a risk threshold, with full context shown to the approver.

Immutable audit

Every request, decision and result logged with correlation IDs, ready for ISO 27001 and regulator requests.

Plus the fundamentals: operator IAM integration, OAuth 2.0, JWT and mTLS, role-based access, tenant isolation and signed, isolated containers.

Graduated autonomy

Autonomy is earned, one tier at a time.

Governance is what lets you move up. Each tier unlocks only when the controls beneath it are proven in your network.

Human in controlAI in control
Tier 01

Read-only intelligence

  • Network health dashboards
  • Service qualification
  • Customer impact analysis
  • Change impact prediction
Controls in forceRBAC, rate control, full audit.
Tier 02

Assisted operations

  • Trouble ticket enrichment
  • Neighbour relation tuning
  • Service activation pre-check
  • Capacity planning intel
Controls in forcePlus human approval on every write, with blast radius shown to the approver.
Tier 03

Autonomous operations

  • Self-healing parameter rollback
  • Zero-touch provisioning
  • Intelligent alarm correlation
  • Dynamic network slicing
Controls in forcePlus blast radius thresholds, change windows, automatic rollback and human override.
Tier 04 · read-only lane

Business intelligence

A parallel read-only lane for executives and planners, running alongside any tier.

  • Network investment ROI
  • Regulatory compliance audit
  • Competitive benchmarking
  • CAPEX optimisation

Sovereign by design

Your network data stays in your country, on your infrastructure.

Telecom networks are critical national infrastructure. Telepath deploys on-premises by default, inside your perimeter, with policy, audit and tool execution all under your control.

01

You choose where it runs

On-premises or in-country cloud.

02

Model choice

Works with hosted or locally run models, so sensitive queries need never leave your estate.

03

Your policies, your keys

Policy, credentials and audit logs are held and controlled by you.

04

Regulator-ready

Explainable decisions and complete audit trails for security and data protection reviews.

Vendor neutral

Neutral by architecture, not by promise.

Telepath sits between your AI and your systems without favouring either side. Change a model, a network vendor or an ITSM platform and your agents keep working.

Any model

GPT, Claude, Gemini or open-weight models.

Any network or IT vendor

Standard TM Forum and CAMARA contracts across multi-vendor RAN, core and security estates.

Any platform

ServiceNow or Jira, cloud or on-premises.

In Telco AEGIS, Telepath brought components from Ericsson, Huawei, MTM, SecurityGen and Tritronik into one governed workflow.

Architecture

One protocol, the whole estate.

Five layers between your agents and your systems of record. Everything an agent does passes through governance.

01Agent layerYour AI agents and RAG. LLM options: GPT, Claude, Gemini.
02Governance, sovereignty, auditcontext enrichment · Cedar policy · RBAC · rate control · approval gates · audit
03MCP serversTool abstraction per domain.
04Open standardsTM Forum APIs and CAMARA extensions.
05Systems of recordYour BSS and OSS estate.

MCP server catalogue

Tools for every domain of the estate.

Each interface is vendor-agnostic. Today's connectors are a starting point, not a lock-in.

ENM

  • enm_get_alarms
  • enm_get_topology_overview
  • enm_find_root_cause
  • enm_get_pm_data

BSS

  • service_qualification
  • get_invoice
  • get_sla_terms
  • get_usage_summary

ITSM

  • create_trouble_ticket
  • add_ticket_note
  • list_trouble_tickets
  • link_tickets

Bare metal

  • list_available_servers
  • check_gpu_availability
  • provision_bare_metal
  • get_server_status

Standards

Built on open telecom standards.

Service management

TMF633TMF640TMF637TMF638

Customer management

TMF629TMF632TMF621

Product and ordering

TMF620TMF622TMF641

Resource and assurance

TMF639TMF656TMF628

CAMARA APIs

LocationQoDDevice statusSIM swap

Bare metal

IPMIRedfishNVIDIA SMI

Live demo

See governed AI act on a live telecom estate.

demo@akuig.com · info@akuig.com

Back to akuig

Case study · TM Forum Catalyst C26.0.980

Telco AEGIS: governed, autonomous security across a multi-vendor ecosystem

Four operators, six technology partners and one governed MCP layer between the AI agents and the network.

At a glance

ProgrammeTM Forum Catalyst, showcased at DTW Ignite, Copenhagen, June 2026
ChampionsTelkomsel, Telin, STC, Singtel
Partnersakuig, Ericsson, Huawei, MTM, SecurityGen, Tritronik
akuig's roleMCP orchestration layer (Telepath AI)
FrameworksTM Forum ODA, Autonomous Networks Level 4, MCP

The challenge

Advanced threat actors such as UNC3886 can stay hidden inside a network for months, and legacy SS7 weaknesses still allow subscriber location tracking. Static, fragmented defences are too slow to respond. Operators need automated response, but automated action on live security infrastructure is only acceptable if it is governed.

The approach

A closed-loop lifecycle (monitor, detect, generate, validate, deploy) in which specialised AI agents collaborate. Decision intelligence is kept separate from enforcement, and every security action is tested and risk-assessed before it reaches production.

akuig's role

Telepath as the governed hub between partners.

In each use case, partner components exchanged data only through Telepath, so every step carried context, policy and an audit trail.

Use case 1

APT detection (UNC3886)

Telepath's MCP servers gathered inventory data and Ericsson SCM security configuration data, passed it to Tritronik's agent, then distributed the agent's output to MTM's breach and attack simulation, the ITSM service and the dashboard.

TelepathMCP orchestration Inventory dataakuig · MCP servers SCM security configEricsson Detection agentTritronik Breach & attack simMTM ITSM serviceTicketing DashboardSOC view
Gathered into Telepath Routed to agent Distributed out
Use case 2

SS7 location tracking

Telepath ran knowledge management (GSMA threat intelligence, inter-operator knowledge bases and standards), triggered SecurityGen's attack simulation, received IDS alerts, applied auto-mitigation to the signalling firewall and raised incidents in ITSM.

Telepathknowledge +mitigation Knowledge baseGSMA · standards IDS alertsSignalling monitor Attack simulationSecurityGen Signalling firewallAuto-mitigation ITSM serviceIncidents raised
Knowledge to simulation Alerts into Telepath Mitigation and incidents out

Why governance mattered

Pushing mitigation rules to a live signalling firewall is a tier 03 action. Every step had to be explainable, auditable and validated before production.

That is Telepath's governance model working in a real operator environment.

Catalyst-reported outcomes

Figures reported by the TM Forum Catalyst team for Telco AEGIS, not akuig product benchmarks.

Under 2 min
Detection-to-containment target
Over 30%
Manual effort reduced
Over 95%
Security updates validated before deployment

Source: TM Forum Catalyst C26.0.980, Telco AEGIS.

Partners and champions

TelkomselTelinSTCSingtel akuigEricssonHuaweiMTMSecurityGenTritronik