Public-source research
Vendor evidence
Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.
Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6
No public claim found for this capability.
No quoted source text is recorded for this claim.
Related framework references (5)
No public claim found for this capability.
No quoted source text is recorded for this claim.
Related framework references (5)
Operant claims it can discover managed and unmanaged agents running in software as a service (SaaS) platforms.
Discover managed and unmanaged agents running in cloud environments, SaaS platforms, and development tools.
Related framework references (5)
Tenable One AI Exposure publicly lists supported AI platforms including ChatGPT Enterprise, Microsoft Copilot, 365 Copilot, and Studio Copilot.
Tenable One AI Exposure currently supports these AI platforms: OpenAI ChatGPT Enterprise, Microsoft Copilot, 365 Copilot, and Studio Copilot.
Related framework references (5)
No public claim found for this capability.
No quoted source text is recorded for this claim.
Related framework references (5)
No public claim found for this capability.
No quoted source text is recorded for this claim.
Related framework references (5)
CrowdStrike claims Falcon Shield provides visibility into AI activity across software as a service (SaaS) applications including Microsoft 365, ChatGPT Enterprise, and Snowflake.
provides visibility into AI activity across SaaS applications like Microsoft 365, ChatGPT Enterprise, and Snowflake.
Related framework references (5)
HiddenLayer materials reviewed did not provide a public claim for software as a service (SaaS) AI inventory or embedded third-party software as a service (SaaS) AI discovery.
No quoted source text is recorded for this claim.
Related framework references (5)
Aurascape claims it uncovers AI apps and agents embedded inside software as a service (SaaS) applications.
Automatically uncover every AI app and agent in use, even those embedded inside SaaS apps, and stop personal or risky usage before it creates exposure.
Related framework references (5)
Cyberhaven claims it inventories mainstream software as a service (SaaS) generative AI applications as part of AI app discovery.
Cyberhaven automatically inventories sanctioned and unsanctioned AI apps as they appear across the organization, from mainstream SaaS generative AI applications to endpoint coding assistants, open-source agent frameworks, and MCP servers.
Related framework references (5)
Knostic materials reviewed did not provide a public claim for software as a service (SaaS) AI inventory, embedded software as a service (SaaS) AI features, or third-party software as a service (SaaS) AI provider monitoring.
No quoted source text is recorded for this claim.
Related framework references (5)
Island claims it captures which AI applications and large language models (LLMs) employees access and what data moves in and out of AI tools.
Island captures AI usage that other tools can't see, whether it happens in the browser or via desktop apps, whether the user is using corporate or personal accounts, and whether an AI app is accessing internal tools.
Related framework references (5)
Aembit materials reviewed did not provide a public claim for software as a service (SaaS) AI inventory, embedded software as a service (SaaS) AI features, or third-party AI service monitoring.
No quoted source text is recorded for this claim.
Related framework references (5)
Wiz materials reviewed did not provide a public claim for embedded software as a service (SaaS) AI feature inventory or employee third-party software as a service (SaaS) AI monitoring.
No quoted source text is recorded for this claim.
Related framework references (5)
Varonis claims it prevents sensitive data exposure via AI copilots including Microsoft 365 Copilot, ChatGPT Enterprise, and Salesforce Agentforce.
Varonis prevents sensitive data exposure via AI copilots like Microsoft 365 Copilot, ChatGPT Enterprise, Salesforce Agentforce, and more.
Related framework references (5)
Pangea materials reviewed did not provide a public claim for software as a service (SaaS) AI inventory, embedded software as a service (SaaS) AI feature discovery, or third-party AI service provider monitoring.
No quoted source text is recorded for this claim.
Related framework references (5)
F5 materials reviewed did not provide a public claim for software as a service (SaaS) AI inventory, embedded software as a service (SaaS) AI feature discovery, or third-party AI service provider monitoring.
No quoted source text is recorded for this claim.
Related framework references (5)
Iterate.ai materials reviewed did not provide a public claim for software as a service (SaaS) AI inventory, embedded software as a service (SaaS) AI feature discovery, or third-party AI service provider monitoring.
No quoted source text is recorded for this claim.
Related framework references (5)
Credo AI claims a centralized inventory of agents, models, applications, and shadow AI with enterprise auto-discovery.
Centralized inventory of every AI system, including agents, models, apps, and shadow AI, with auto-discovery across your enterprise.
Related framework references (5)
Holistic AI claims read-only connections to software as a service (SaaS) tools that scan for AI models, application programming interface (API) calls, agents, workflows, and pipelines.
Holistic AI connects read-only to your cloud environments (AWS, Azure, GCP), code repositories (GitHub, GitLab), data platforms (Snowflake, Databricks), and SaaS tools.
Related framework references (5)