Postman adds site-wide licensing, Private Cloud, and an air-gapped client Postman announced site-wide licensing and Postman Private Cloud (PPC), a dedicated single-tenant deployment it manages for regulated enterprises, with an air-gapped Postman client set for general availability in early 2027 as part of site-wide licensing. Site-wide licensing lets customers license Postman for every user and agent in their organization, paying a platform fee plus consumption-based pricing for products used, and Postman said thousands of enterprise customers in more than 100 countries use the platform. Postman also pointed to Passport, launched in September, which keeps API keys in a customer's own secret store and issues references that work only through a proxy running in the customer's VPC. Postman adds site-wide licensing, Private Cloud, and an air-gapped client Announcing site-wide licensing and Private Cloud, with an air-gapped Postman client coming soon. Over the last few months we’ve shipped Git-native Workspaces, Agent Mode, API Catalog, Context Graph, Performance Testing, and the AI Engineer, along with a new AI stack built for agents: Passport, Fern, Fabric, and Astropods. Thousands of enterprise customers in more than 100 countries use Postman. As the product range has grown, they’ve asked for more control over how they buy and run the platform. Today we’re introducing more options for large organizations. Site-wide licensing. Customers can license Postman for every user and agent in their organization. A platform fee covers access to the Postman platform, and customers pay for the products they use on a consumption basis. Private Cloud. Where data is stored is a critical factor for many enterprises, and more so with AI. Postman Private Cloud PPC is a dedicated, single-tenant deployment that Postman manages on your behalf. It’s built for regulated and enterprise organizations that need greater control over where their data is stored and how it’s handled. PPC extends Postman’s platform security beyond our standard multi-tenant offering, giving customers in highly regulated industries the assurances their compliance teams require. Air-gapped Postman client. Some teams build APIs in environments with no internet access, where security rules out any connection to an outside service. Those teams still work in Git, using self-hosted servers and internal CI pipelines. The Postman client already fits that workflow: Git-native Workspaces store collections and specs as files in the repository, and the Postman CLI runs tests in any pipeline. The air-gapped client runs entirely inside the customer’s network with no connection to Postman’s cloud. It will be generally available in early 2027 as part of site-wide licensing. Securing APIs for agents Deployment and licensing are one part of what enterprises need from us. The other is keeping API access safe as agents take on more of the work. Every day, Postman’s secret scanning helps security teams find and fix exposed API keys across hundreds of thousands of secrets. That work has shown us how much risk sits outside any platform. Many teams still call APIs through a mix of homegrown tools, scripts, and SDKs. Ask your team a simple question about the API tool they use today. When someone sends a request, where did the API key come from, and where did the request go? In most companies, the key is on a developer’s laptop, copied from a teammate or a wiki page, and the security team has no idea how many copies exist. Add a few hundred agents calling APIs around the clock, each needing its own access, and the number of keys no one can account for grows every week. For most teams, the only fix is to rotate a key after it leaks. In September we launched Passport to secure API access for people, machines, and agents. It starts from a simple position: any key in circulation is a risk. Passport keeps keys in your own secret store and gives developers and agents a reference instead, which only works through a proxy running in your VPC. The key and the request stay inside your network. With these new deployment options and Passport, Postman is the most secure platform for building and consuming APIs. To learn more, talk to your Postman account rep or contact sales https://www.postman.com/contact-sales/ .