ASAI Security ResearchIndependent public-source research
Public reviewread only

Solution approach

AI application runtime protection

Protect custom AI applications and knowledge-retrieval systems against unsafe inputs, outputs, model calls, and behavior while they run.

Use-case context

How this approach relates to the selected use case

Applications and agents: Directly addresses — Protect custom AI applications, information-retrieval systems, model calls, prompts, and outputs while they run.

Back to use case →
Research scopeVendorsPublicly documented vendor profiles
Evaluation guideRequirementsRequirements connected to the selected use case
Evidence basisSourcesPublic claims linked to their original sources
Unresolved itemsQuestionsMissing support is labeled instead of assumed
View research coverageThese counts describe available public research, not product quality or suitability.Expand
Vendor profiles
43 shown in this view
Security requirements
2 to review
Strong public support
65 requirement records
Limited public support
17 requirement records
Open research
4 with no supporting claim · 0 incomplete

Evaluation guide

What to verify for this use case

Additional security requirement

Generative AI application security

Protect enterprise-built large language model (LLM) applications, retrieval-augmented generation (RAG) systems, prompts, application programming interfaces (APIs), model calls, tools, and production runtime behavior.

Questions to test
  1. A test large language model (LLM) application event records prompt, application programming interface (API), model, retrieval, or tool interaction context.
  2. A prompt-injection or unsafe-output test is detected, blocked, or flagged by the guardrail or large language model (LLM) firewall.
  3. The evidence links the event to an application, endpoint, request identifier, or workflow.
Related frameworks

NIST AI RMF Playbook · NIST Cybersecurity Framework 2.0 · CIS Critical Security Controls · ISO/IEC 42001 · OWASP GenAI Security Solutions Landscape

Foundational security requirement

AI gateway, tool-connection, and runtime controls

Mediate model, agent, tool, application programming interface (API), connector, and Model Context Protocol (MCP) traffic through an enforcement point that applies identity-aware policy, content controls, routing, rate limits, and auditable allow or deny decisions.

Questions to test
  1. A model, agent, tool, or Model Context Protocol (MCP) request passes through a named policy enforcement point.
  2. A test policy allows, blocks, transforms, redirects, or rate-limits the request with an explicit reason.
  3. The audit event records caller identity, destination, tool or model, policy decision, and timestamp.
Related frameworks

NIST AI RMF Playbook · NIST Cybersecurity Framework 2.0 · CIS Critical Security Controls · ISO/IEC 42001 · OWASP GenAI Security Solutions Landscape

Vendor research

Vendors with public research for this approach

Choose vendors to compare →

Only requirements explicitly connected to the selected use case are shown. Vendors are grouped by whether this approach is a core product focus or related coverage, then ordered by documented support across the requirements shown. This organizes public research coverage; it is not a product ranking or recommendation.

Evidence labelsStrong public supportLimited public supportNo supporting claim foundResearch incomplete
VendorGenerative AI app securityAI gateway and tool controlsSourcesAction
Core product focusThis approach is central to how these vendors present the product · 22 vendors
Cisco AI DefenseEstablishedSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Cloudflare AI Security SuiteEstablishedSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Enkrypt AIEmergingSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
F5 AI Security PlatformEstablishedSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Imperva AI Application SecurityEstablishedSupport found for 2 of 2 requirementsStrong public supportStrong public support1Profile →
Lakera / Check PointEstablishedSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Lasso SecurityEmergingSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Noma SecurityScaledSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Operant AIEmergingSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Palo Alto Networks Prisma AIRSEstablishedSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Pangea / CrowdStrike Falcon AIDREstablishedSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Prompt Security / SentinelOneEstablishedSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Proofpoint AI Security / AcuvityEstablishedSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Wallarm AI Control PlatformGrowth stageSupport found for 2 of 2 requirementsStrong public supportStrong public support1Profile →
Harness AI Security / TraceableEstablishedSupport found for 2 of 2 requirementsStrong public supportLimited public support1Profile →
HiddenLayerGrowth stageSupport found for 2 of 2 requirementsStrong public supportLimited public support2Profile →
Iterate.ai AgentWatchEmergingSupport found for 2 of 2 requirementsLimited public supportStrong public support1Profile →
KnosticEmergingSupport found for 2 of 2 requirementsLimited public supportStrong public support2Profile →
MindgardEmergingSupport found for 2 of 2 requirementsStrong public supportLimited public support1Profile →
Upwind AI SecurityScaledSupport found for 2 of 2 requirementsStrong public supportLimited public support1Profile →
Wiz AI-SPM / Google CloudEstablishedSupport found for 2 of 2 requirementsStrong public supportLimited public support2Profile →
ZenityGrowth stageSupport found for 2 of 2 requirementsLimited public supportStrong public support2Profile →
Related coverageThese vendors address the requirements through another core product focus · 21 vendors
AIM Security / Cato NetworksScaledSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
AktoEmergingSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
AurascapeGrowth stageSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Backslash Agentic AI Endpoint SecurityEmergingSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Cequence AI GatewayScaledSupport found for 2 of 2 requirementsStrong public supportStrong public support1Profile →
CrowdStrike AI SecurityEstablishedSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Holistic AIEmergingSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Island Enterprise BrowserScaledSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Kong AI GatewayScaledSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Obsidian AI SecurityGrowth stageSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Speakeasy AI Control PlaneGrowth stageSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
Varonis AI SecurityEstablishedSupport found for 2 of 2 requirementsStrong public supportStrong public support2Profile →
AembitEmergingSupport found for 2 of 2 requirementsLimited public supportStrong public support2Profile →
Akamai API SecurityEstablishedSupport found for 2 of 2 requirementsStrong public supportLimited public support1Profile →
Apex Security / TenableEstablishedSupport found for 2 of 2 requirementsStrong public supportLimited public support1Profile →
BigID AI Security and GovernanceScaledSupport found for 2 of 2 requirementsStrong public supportLimited public support1Profile →
LatticeFlow AIEmergingSupport found for 1 of 2 requirementsStrong public supportNo supporting claim found1Profile →
Salt Agentic Security PlatformScaledSupport found for 2 of 2 requirementsLimited public supportLimited public support1Profile →
Orca AI-SPMScaledSupport found for 1 of 2 requirementsLimited public supportNo supporting claim found1Profile →
Snyk EvoScaledSupport found for 1 of 2 requirementsLimited public supportNo supporting claim found1Profile →
Veeam / Securiti AIEstablishedSupport found for 1 of 2 requirementsLimited public supportNo supporting claim found1Profile →

Company maturity remains a filter and profile attribute; it does not affect the research-coverage order.