Public-source research
Vendor evidence
Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.
Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6
Entro claims agentic AI security maps agents to non-human identities, entitlements, creators, secrets, and permissions to contain overprivileged access.
mapping agents to non-human identities, entitlements , and creators
Related framework references (5)
Entro claims continuous monitoring of AI-agent permissions and activity can expose abuse and risky actions through NHIDR.
continuously monitor their permissions and activity on your resources
Related framework references (5)
Entro Security claims it secures the agentic AI and non-human identity (NHI) lifecycle from discovery and classification through observability and remediation.
Secure the Agentic AI and NHI Lifecycle
Related framework references (5)
Token Security claims teams can manage the full AI agent identity lifecycle, enforce ownership, and decommission orphaned identities.
Token Security helps teams manage the full AI agent identity lifecycle
Related framework references (5)
Operant AI claims Agent Protector catalogs agent identities, including user and service accounts, and its Model Context Protocol (MCP) security includes non-human identity (NHI) access controls.
The system creates detailed catalogs of agent identities, including both user and service accounts
Related framework references (5)
Apex Security / Tenable claims AI-agent exposure management with visibility into agents, connected applications, identities, permissions, and data access.
connecting AI software, cloud infrastructure, identities, and usage into a single, risk-aware view
Related framework references (5)
No public claim found for this capability.
No quoted source text is recorded for this claim.
Related framework references (5)
Onyx claims application programming interface (API) keys exist as distinct users so administrators can trace activity and manage permissions for programmatic access.
API Keys exist as distinct users in Onyx, allowing you to trace activity and manage permissions at the key level.
Related framework references (5)
CrowdStrike claims Continuous Identity for AI Agents eliminates standing privileges and verifies trust for every agent action.
Continuous Identity for AI Agents introduces a model that eliminates standing privileges and immediately verifies trust for every agent action.
Related framework references (5)
HiddenLayer materials reviewed did not provide a public claim for non-human identity, service-account, credential lifecycle, or AI-agent identity governance.
No quoted source text is recorded for this claim.
Related framework references (5)
Aurascape materials reviewed did not provide a public claim for non-human identity (NHI), service-account, credential lifecycle, or AI-agent identity governance.
No quoted source text is recorded for this claim.
Related framework references (5)
Cyberhaven materials reviewed did not provide a public claim for non-human identity (NHI), service-account, credential lifecycle, or AI-agent identity governance.
No quoted source text is recorded for this claim.
Related framework references (5)
Knostic materials reviewed did not provide a public claim for non-human identity (NHI) ownership, service-account lifecycle, credential rotation, scoped credentials, or least-privilege governance.
No quoted source text is recorded for this claim.
Related framework references (5)
Island materials reviewed did not provide a public claim for non-human identity (NHI) ownership, service-account lifecycle, credential rotation, scoped credentials, or least-privilege governance.
No quoted source text is recorded for this claim.
Related framework references (5)
Aembit claims non-human identity (NHI) coverage for AI agents, application programming interfaces (APIs), microservices, CI/CD pipelines, scripts, and service accounts with dynamically issued short-lived credentials.
non-human identities (NHIs) — including AI agents, APIs, microservices, CI/CD pipelines, scripts, and service accounts
Related framework references (5)
Wiz claims real AI risk context connects infrastructure, identity, data, and AI.
Understand real AI risk by connecting context across infrastructure, identity, data, and AI.
Related framework references (5)
Varonis claims it maps AI accounts with access to sensitive data.
Visualize AI’s sensitive data access Revoke excessive permissions Fix risky AI misconfigurations Monitor AI-created data Classify AI-generated content Apply sensitivity labels Monitor prompts and alert on suspicious activity Keep sensitive data out of LLMs Discover hidden AI workloads Identify sensitive data flows Map AI accounts with access to sensitive data
Related framework references (5)
Pangea materials reviewed did not provide a public claim for AI-agent identity inventory, service-account ownership, scoped credentials, secrets rotation, least privilege, or non-human identity (NHI) lifecycle management.
No quoted source text is recorded for this claim.
Related framework references (5)
F5 materials reviewed did not provide a public claim for AI-agent identity inventory, service-account ownership, scoped credentials, secrets rotation, least privilege, or non-human identity (NHI) lifecycle management.
No quoted source text is recorded for this claim.
Related framework references (5)
Iterate.ai materials reviewed did not provide a public claim for AI-agent identity inventory, service-account ownership, scoped credentials, secrets rotation, least privilege, or non-human identity (NHI) lifecycle management.
No quoted source text is recorded for this claim.
Related framework references (5)