ASAI Security ResearchIndependent public-source research
Public reviewread only

Public-source research

Vendor evidence

Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.

Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6

Showing 281–300 of 1280 evidence records

ModelOp · Security requirement

AI cost and usage controls

Source checkedLimited public support for this requirement
What the vendor says

ModelOp claims portfolio-level dashboards and reporting for AI cost, value, return on investment (ROI), and use-case cost tracking.

Exact source quote
Executive dashboards tracking AI value, cost, and risk over time
Runlayer · Security requirement

AI cost and usage controls

Source checkedLimited public support for this requirement
What the vendor says

Runlayer claims centralized AI cost monitoring, spend attribution to teams and workflows, and budget-conditioned access for users and agents.

Exact source quote
Monitor AI usage, cost, adoption, and agent activity in one place, then tie spend back to the teams and workflows getting real value.
AWS Bedrock native AI security · Security requirement

AI-feature discovery in business applications

No supporting claim found
Research finding

AWS Bedrock native-control materials reviewed did not provide a public claim for software as a service (SaaS) AI inventory or embedded third-party software as a service (SaaS) AI discovery.

AWS Bedrock native AI security · Security requirement

Generative AI application security

Source checkedStrong public support for this requirement
What the vendor says

AWS claims Bedrock Guardrails can block harmful content and use Automated Reasoning checks to reduce hallucinations and data ambiguity.

Exact source quote
Bedrock Guardrails can help block up to 88% of harmful content and identify correct model responses with up to 99% accuracy to minimize hallucinations and data ambiguity using Automated Reasoning checks.
AWS Bedrock native AI security · Security requirement

Sensitive-data protection for generative AI

Source checkedLimited public support for this requirement
What the vendor says

AWS claims Bedrock does not store or use customer data to train models and supports encryption and identity-based access policies.

Exact source quote
Bedrock never stores or uses your data to train models, ensuring complete security and privacy, with encryption of data in transit and at rest, as well as identity-based policies for managing data access.
AWS Bedrock native AI security · Security requirement

Action-taking agent monitoring

Source checkedStrong public support for this requirement
What the vendor says

AWS claims Bedrock AgentCore includes tracing, debugging, and evaluation capabilities for agent performance.

Exact source quote
continuously optimize agent performance with tracing, debugging, and evaluation capabilities built in.
AWS Bedrock native AI security · Security requirement

Non-human identity and service-account security

Source checkedLimited public support for this requirement
What the vendor says

AWS claims Bedrock AgentCore connects agents to enterprise systems, tools, and data with automatic authentication and access controls.

Exact source quote
connect agents to enterprise systems, tools, and data with automatic authentication and access controls
AWS Bedrock native AI security · Security requirement

Agent-to-agent communication security

No supporting claim found
Research finding

AWS Bedrock native-control materials reviewed did not provide a public Model Context Protocol (MCP), agent-to-agent (A2A), or agent-to-agent communication security claim.

AWS Bedrock native AI security · Security requirement

AI cost and usage controls

Source checkedStrong public support for this requirement
What the vendor says

AWS claims Bedrock cost-optimization features such as Model Distillation, Prompt caching, and Intelligent Prompt Routing can reduce expenses.

Exact source quote
Features like Model Distillation, Prompt caching, and Intelligent Prompt Routing can reduce expenses while maintaining performance.
Google Cloud native AI security · Security requirement

Unapproved AI use discovery

No supporting claim found
Research finding

Google Model Armor native-control materials reviewed did not provide a public claim for discovering employee use of third-party AI apps.

Google Cloud native AI security · Security requirement

AI-feature discovery in business applications

No supporting claim found
Research finding

Google Model Armor native-control materials reviewed did not provide a public claim for software as a service (SaaS) AI inventory or embedded third-party software as a service (SaaS) AI discovery.

Google Cloud native AI security · Security requirement

Generative AI application security

Source checkedStrong public support for this requirement
What the vendor says

Google claims Model Armor filters prompts and responses to protect large language models (LLMs) from malicious or sensitive content exposure or generation.

Exact source quote
Model Armor filters both input (prompts) and output (responses) to prevent the LLM from exposure to or generation of malicious or sensitive content.
Google Cloud native AI security · Security requirement

Sensitive-data protection for generative AI

Source checkedStrong public support for this requirement
What the vendor says

Google claims Model Armor can mitigate leakage of sensitive IP and PII in large language model (LLM) prompts or responses.

Exact source quote
Mitigate the risk of leaking sensitive intellectual property (IP) and personally identifiable information (PII) in LLM prompts or responses.
Google Cloud native AI security · Security requirement

Controls for unapproved AI use

Source checkedLimited public support for this requirement
What the vendor says

Google claims Gemini Enterprise Agent Platform can call Model Armor to inspect or block traffic that violates defined policies.

Exact source quote
Gemini Enterprise Agent Platform calls the Model Armor service, which inspects or blocks traffic that violates your defined policies
Google Cloud native AI security · Security requirement

Approved AI usage monitoring

Source checkedLimited public support for this requirement
What the vendor says

Google claims Cloud Logging can show Model Armor sanitization results for prompts and responses in Gemini Enterprise Agent Platform integration.

Exact source quote
You need to enable Cloud Logging to view the sanitization results of prompts and responses.
Google Cloud native AI security · Security requirement

Action-taking agent monitoring

Source checkedLimited public support for this requirement
What the vendor says

Google claims Model Armor can intercept prompts and responses for Gemini Enterprise Agent Platform traffic.

Exact source quote
Model Armor intercepts prompts before they reach Gemini models, and intercepts responses before your application receives them.
Google Cloud native AI security · Security requirement

AI cost and usage controls

Source checkedLimited public support for this requirement
What the vendor says

Google says Model Armor uses total prompt and response tokens for pricing and limits tokens processed in each prompt and response.

Exact source quote
Model Armor uses the total number of tokens in AI prompts and responses for pricing purposes. Model Armor limits the number of tokens processed in each prompt and response.
Microsoft native AI security beyond Purview DSPM · Security requirement

Unapproved AI use discovery

No supporting claim found
Research finding

Microsoft Foundry and Agent ID native-control materials reviewed did not provide a public claim for discovering employee use of third-party AI apps.

Microsoft native AI security beyond Purview DSPM · Security requirement

AI-feature discovery in business applications

No supporting claim found
Research finding

Microsoft Foundry and Agent ID native-control materials reviewed did not provide a public claim for software as a service (SaaS) AI inventory or embedded third-party software as a service (SaaS) AI discovery.