Public-source research
Vendor evidence
Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.
Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6
Akamai application programming interface (API) Security materials reviewed did not provide a public claim for coding-agent, integrated development environment (IDE), CLI, workstation, tool, and package-action governance.
No quoted source text is recorded for this claim.
Related framework references (5)
Salt Code claims real-time policy enforcement while developers generate code with AI coding assistants.
Security policies are applied in real time as developers generate code.
Related framework references (5)
Imperva AI Application Security materials reviewed did not provide a public claim for coding-agent, integrated development environment (IDE), CLI, workstation, tool, and package-action governance.
No quoted source text is recorded for this claim.
Related framework references (5)
Kong AI Gateway materials reviewed did not provide a public claim for coding-agent, integrated development environment (IDE), CLI, workstation, tool, and package-action governance.
No quoted source text is recorded for this claim.
Related framework references (5)
Speakeasy claims governed Model Context Protocol (MCP) access for coding assistants including Cursor, Copilot, and internal agents.
Point Claude, Cursor, ChatGPT, Copilot, and your internal agents at one URL.
Related framework references (5)
Harness AI Security materials reviewed did not provide a public claim for coding-agent, integrated development environment (IDE), CLI, workstation, tool, and package-action governance.
No quoted source text is recorded for this claim.
Related framework references (5)
Wallarm AI Control Platform materials reviewed did not provide a public claim for coding-agent, integrated development environment (IDE), CLI, workstation, tool, and package-action governance.
No quoted source text is recorded for this claim.
Related framework references (5)
Cequence claims a governed application programming interface (API) registry for code-writing agents that build against application programming interface (API) specifications.
Code-writing agents build against API specs.
Related framework references (5)
Upwind materials reviewed did not provide a public claim for coding-agent, integrated development environment (IDE), CLI, workstation, skill, hook, or package-action governance.
No quoted source text is recorded for this claim.
Related framework references (5)
Proofpoint materials reviewed did not provide a public claim for coding-agent, integrated development environment (IDE), CLI, workstation, skill, hook, or package-action governance.
No quoted source text is recorded for this claim.
Related framework references (5)
Securiti AI materials reviewed did not provide a public claim for coding-agent, integrated development environment (IDE), CLI, workstation, skill, hook, or package-action governance.
No quoted source text is recorded for this claim.
Related framework references (5)
Snyk Evo claims real-time action guardrails and generated-code validation before code reaches repositories, pipelines, or production.
apply guardrails to agent actions in real time, and ensure AI-generated code is secure before it reaches repositories, pipelines, or production
Related framework references (5)
ModelOp materials reviewed did not provide a public claim for coding-agent, integrated development environment (IDE), CLI, workstation, skill, hook, or package-action governance.
No quoted source text is recorded for this claim.
Related framework references (5)
LatticeFlow AI materials reviewed did not provide a public claim for coding-agent, integrated development environment (IDE), CLI, workstation, skill, hook, or package-action governance.
No quoted source text is recorded for this claim.
Related framework references (5)
Runlayer claims centralized controls for employees using Claude, Cursor, ChatGPT, Codex, internal agents, Model Context Protocol (MCP) servers, and existing AI clients.
employees are adopting Claude, Cursor, ChatGPT, Codex, and internal agents
Related framework references (5)
Keycard claims governance of coding-agent shell, script, Model Context Protocol (MCP), environment, credential, and audit paths.
keycard run virtualizes .env and mcp.json so credentials never hit disk, and every execution path is audited.
Related framework references (5)
Palo Alto Networks claims agent artifact and endpoint security covering agent code, Model Context Protocol (MCP) servers, skills, local systems, files, and workflows.
Agentic Endpoint Security extends protection to endpoints, governing how agents interact with local systems, files and workflows.
Related framework references (5)
Cisco AI Defense materials reviewed did not provide a public claim for governing coding-agent commands, developer-workstation files or networks, integrated development environment (IDE) extensions, skills, hooks, secrets, or package actions.
No quoted source text is recorded for this claim.
Related framework references (5)
Microsoft Defender for Endpoint claims runtime protection that can detect prompt injection and audit or block actions by supported local AI agents, including coding and CLI agents.
AI agent runtime protection helps you detect prompt injection at the device level and block or audit the agent's action
Related framework references (5)
CrowdStrike claims endpoint discovery and runtime protection for AI assets on engineering machines, including local models, Model Context Protocol (MCP) servers, integrated development environment (IDE) extensions, agent behavior, and sensitive-data flows.
AI assets that can be deployed on endpoints, especially by developers on engineering machines such as LLMs, MCP servers, and IDE extensions.
Related framework references (5)