Public-source research
Vendor evidence
Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.
Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6
Palo Alto Networks claims AI Access Security blocks sensitive text and file data transfer to generative AI apps.
Inline data detection ensures regulatory compliance and blocks sensitive text- and file-based data transfer to GenAI apps.
Related framework references (5)
Cisco claims AI Defense prevents sensitive data loss and protects AI applications against data leakage.
Protect AI applications against rapidly evolving threats, including prompt injections, denial of service, and data leakage.
Related framework references (5)
Microsoft says Purview-supported AI apps use existing controls so tenant data is not returned or used by an large language model (LLM) when the user lacks access.
ensure that data stored in your tenant is never returned to the user or used by a large language model (LLM) if the user doesn't have access to that data.
Related framework references (5)
Noma claims runtime privacy policies can prevent sensitive data from leaving the environment during AI usage.
Privacy policies block sensitive data from leaving your environment.
Related framework references (5)
Netskope claims it inspects and sanitizes AI prompts and responses in real time and protects sensitive data across AI apps.
Inspect and sanitize every prompt and response in real time, with a unified defense against AI threats, misuse, and data loss.
Related framework references (5)
Singulr claims granular policies can use data classification and include redaction as an enforcement action.
Apply broad governance rules or granular controls based on AI service type, user context, data classification, or business purpose.
Related framework references (5)
SentinelOne Prompt Security claims it redacts sensitive data and enforces policies across 15,000+ AI services in real time.
Redact sensitive data and enforce policies across 15,000+ AI services in real time
Related framework references (5)
AIM Security (Cato) claims monitoring and governing prompts and responses prevents data leakage and supports governance and compliance.
By monitoring and governing prompt and responses, inline, using APIs or with a browser extension, organizations can prevent data leakage, limit misuse, and ensure governance and compliance for AI use.
Related framework references (5)
No public claim found for this capability.
No quoted source text is recorded for this claim.
Related framework references (5)
Grip Security claims visibility into AI tools, agents, and software as a service (SaaS) apps mapped to the identities and data they touch.
mapped to the identities and data they touch.
Related framework references (5)
WitnessAI claims it protects sensitive data across employee and agent activity by redacting it in real time.
Protect sensitive data across employee and agent activity
Related framework references (5)
Lasso Security claims it analyzes what sensitive data agents can reach and enforces policies inline at the proxy, application programming interface (API), or AI Gateway layer.
Analyze your security posture by understanding what your agents are exposed to, what actions they can perform, what sensitive data can they reach, and more.
Related framework references (5)
Harmonic claims data classification and logging provide audit trails, data residency controls, and evidence that AI use stays within defined boundaries.
Our data classification and logging give you the audit trail, the data residency controls, and the ability to demonstrate that AI use in your organization operates within defined boundaries.
Related framework references (5)
Reco claims it identifies and mitigates data exposure risks across the agent and app ecosystem.
Identify and mitigate data exposure risks across your agent and app ecosystem.
Related framework references (5)
Lakera claims Workforce AI Security stops sensitive data exposure across AI apps, browser extensions, desktop agents, integrated development environments (IDEs), and Model Context Protocol (MCP)-connected tools.
Discover shadow AI, assess risk, govern employee usage, and stop sensitive data exposure across AI apps, browser extensions, desktop agents, IDEs, and MCP-connected tools.
Related framework references (5)
Zenity claims it identifies when AI agents access or expose sensitive data and lets teams flag, redact, or block unsafe behavior.
Zenity identifies when AI agents access or expose PHI, PII, PCI, or hardcoded secrets
Related framework references (5)
Nightfall claims real-time visibility and control over sensitive data movement across AI agents, Model Context Protocol (MCP) servers, endpoints, and software as a service (SaaS), preventing data that should not leave.
Control data movement across AI agents, MCP servers, endpoints, and SaaS—without slowing innovation. Nightfall gives you real-time visibility and control over how sensitive data moves — and prevents what shouldn't leave. Legacy data security can't see or stop this.
Related framework references (5)
LayerX claims it detects, monitors, and classifies data activities across AI tools to prevent sensitive information leakage to AI tools or applications.
Detect, monitor, and classify all data activities across all AI tools to prevent leakage of sensitive information to AI tools or applications
Related framework references (5)
Astrix publishes a customer quote stating it helps reduce data exfiltration risk, remediate third-party integration risks, and move toward least privilege.
“Astrix helps us us reduce the risk of data exfiltration, remediate third-party integration risks and go down to a least-privileged model.”
Related framework references (5)
No public claim found for this capability.
No quoted source text is recorded for this claim.
Related framework references (5)