ASAI Security ResearchIndependent public-source research
Public reviewread only

Public-source research

Vendor evidence

Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.

Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6

Showing 61–72 of 72 evidence records

Clear all filters
Credo AINon-human identity and service-account securityNo supporting claim found

Credo AI materials reviewed did not provide a public claim for service-account, workload-identity, application programming interface (API)-key, secret-rotation, or machine-credential lifecycle management.

No quoted source text is recorded for this claim.
Holistic AINon-human identity and service-account securityNo supporting claim found

Holistic AI materials reviewed did not provide a public claim for generic workload identities, service accounts, application programming interface (API) keys, secret rotation, or machine-credential lifecycle management.

No quoted source text is recorded for this claim.
MindgardNon-human identity and service-account securityNo supporting claim found

Mindgard materials reviewed did not provide a public claim for workload identities, service accounts, application programming interface (API)-key discovery, secret rotation, or machine-credential lifecycle management.

No quoted source text is recorded for this claim.
Enkrypt AINon-human identity and service-account securityNo supporting claim found

Enkrypt AI materials reviewed did not provide a public claim for generic workload identities, service accounts, application programming interface (API)-key discovery, secret rotation, or machine-credential lifecycle management.

No quoted source text is recorded for this claim.
AktoNon-human identity and service-account securityNo supporting claim found

Akto materials reviewed did not provide a public claim for generic service-account discovery, application programming interface (API)-key lifecycle, secret rotation, or machine-credential governance.

No quoted source text is recorded for this claim.
Okta for AI AgentsNon-human identity and service-account securitySource checkedStrong public support for this requirement

Okta claims secret and application programming interface (API)-key vaulting and rotation for AI-agent credential lifecycle.

Vault and rotate secrets and API keys
CyberArk Secure AI AgentsNon-human identity and service-account securitySource checkedStrong public support for this requirement

CyberArk claims unified discovery, governance, and short-lived identity-based access for machine identities and modern workloads.

short-lived, identity-based access for modern workloads
BigID AI Security and GovernanceNon-human identity and service-account securityNo supporting claim found

BigID materials reviewed did not provide a public claim for service-account discovery, application programming interface (API)-key lifecycle, secret rotation, or machine-credential governance.

No quoted source text is recorded for this claim.
Obsidian AI SecurityNon-human identity and service-account securitySource checkedStrong public support for this requirement

Obsidian claims resolution of agent identity to service accounts, application programming interface (API) tokens, OAuth privileges, embedded credentials, and connected software as a service (SaaS) applications.

the real service accounts it runs as
Cloudflare AI Security SuiteNon-human identity and service-account securitySource checkedStrong public support for this requirement

Cloudflare claims secure edge storage of application programming interface (API) keys and secrets with simplified rotation across model providers.

simplifying key rotation across providers
Orca AI-SPMNon-human identity and service-account securitySource checkedLimited public support for this requirement

Orca claims detection of exposed keys and tokens for AI services and software packages in code repositories.

keys and tokens to AI services and software packages
Backslash Agentic AI Endpoint SecurityNon-human identity and service-account securitySource checkedLimited public support for this requirement

Backslash claims visibility into agents using environment credentials, embedded permissions, application programming interface (API)-connected tools, and human host identity.

environment credentials