ASAI Security ResearchIndependent public-source research
Public reviewread only

Public-source research

Vendor evidence

Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.

Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6

Showing 241–260 of 1280 evidence records

LatticeFlow AI · Security requirement

AI assurance and adversarial testing

Source checkedStrong public support for this requirement
What the vendor says

LatticeFlow AI claims app-specific evaluations and adversarial testing before launch with continuous monitoring afterward.

Exact source quote
combining app-specific evaluations and adversarial testing before launch with continuous production monitoring afterward
LatticeFlow AI · Security requirement

AI gateway, tool-connection, and runtime controls

No supporting claim found
Research finding

LatticeFlow AI materials reviewed did not provide a public claim for inline model, agent, tool, application programming interface (API), or Model Context Protocol (MCP) policy enforcement.

LatticeFlow AI · Security requirement

Action-taking agent monitoring

Source checkedStrong public support for this requirement
What the vendor says

LatticeFlow AI claims evaluation of agent workflows, security controls, tool permissions, reliability, compliance risk, and multi-step behavior.

Exact source quote
assessing security controls, tool access permissions, reliability, and compliance risk across multi-step agent behaviors
LatticeFlow AI · Security requirement

Non-human identity and service-account security

No supporting claim found
Research finding

LatticeFlow AI materials reviewed did not provide a public claim for non-human identity, service-account, secret, or workload credential lifecycle controls.

LatticeFlow AI · Security requirement

AI agent identity and permissions

No supporting claim found
Research finding

LatticeFlow AI materials reviewed did not provide a public claim for agent registration, delegated authorization, task-scoped access, and revocation.

LatticeFlow AI · Security requirement

AI coding-agent and workstation security

No supporting claim found
Research finding

LatticeFlow AI materials reviewed did not provide a public claim for coding-agent, integrated development environment (IDE), CLI, workstation, skill, hook, or package-action governance.

Runlayer · Security requirement

Unapproved AI use discovery

Source checkedStrong public support for this requirement
What the vendor says

Runlayer claims discovery of unmanaged agents, MCPs, skills, plugins, and client configurations with visibility into agent sessions.

Exact source quote
Surface Shadow AI from unmanaged agents, MCPs, skills, plugins, and client configs
Runlayer · Security requirement

Approved AI usage monitoring

Source checkedStrong public support for this requirement
What the vendor says

Runlayer claims centralized monitoring of AI usage, adoption, agent activity, and team-level value.

Exact source quote
Monitor AI usage, cost, adoption, and agent activity in one place
Runlayer · Security requirement

Controls for unapproved AI use

Source checkedStrong public support for this requirement
What the vendor says

Runlayer claims policy over what users and agents may access under identity, budget, OAuth grant, and runtime conditions.

Exact source quote
Set what users and agents can access, under which identity, budget, OAuth grant, and runtime conditions.
Runlayer · Security requirement

Sensitive-data protection for generative AI

Source checkedLimited public support for this requirement
What the vendor says

Runlayer claims pre-action runtime scanning of tool calls, outputs, intent, and sensitive data.

Exact source quote
scan tool calls, outputs, intent, and sensitive data before risky actions reach company systems
Runlayer · Security requirement

Generative AI application security

Source checkedLimited public support for this requirement
What the vendor says

Runlayer claims runtime security inspection before agent actions reach enterprise systems.

Exact source quote
Secure runtime execution
Runlayer · Security requirement

AI gateway, tool-connection, and runtime controls

Source checkedStrong public support for this requirement
What the vendor says

Runlayer claims an approved Model Context Protocol (MCP) catalog and governed Model Context Protocol (MCP) gateway across major AI clients.

Exact source quote
serve them through a governed MCP gateway across every major AI client
Runlayer · Security requirement

Action-taking agent monitoring

Source checkedStrong public support for this requirement
What the vendor says

Runlayer claims visibility, policy, and audit across agent sessions, MCPs, skills, plugins, memory, triggers, and scoped permissions.

Exact source quote
full visibility into every agent session