Public-source research
Vendor evidence
Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.
Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6
Showing 341–360 of 1280 evidence records
What the vendor saysMicrosoft claims Purview data security posture management (DSPM) and data security posture management (DSPM) for AI help discover, secure, and apply compliance controls for AI usage across the enterprise.
Exact source quotediscover, secure, and apply compliance controls for AI usage across your enterprise.
Related framework references (5)
What the vendor saysMicrosoft says Purview-supported AI app categories include other AI apps detected through browser activity and categorized as generative AI in the Defender for Cloud Apps catalog.
Exact source quoteOther AI apps that are detected through browser activity and categorized as "Generative AI" in the Defender for Cloud Apps catalog.
Related framework references (5)
What the vendor saysMicrosoft claims supported AI app interactions can be monitored per user in the tenant and prompts and responses can flow into Purview activity views.
Exact source quoteInteractions using supported AI apps can be monitored for each user in your tenant.
Related framework references (5)
What the vendor saysMicrosoft says Endpoint data loss prevention (DLP) policies can warn or block users from sharing sensitive information with third-party generative AI sites accessed through a browser.
Exact source quotewarn or block users from sharing sensitive information with third-party generative AI sites that are accessed via a browser.
Related framework references (5)
What the vendor saysMicrosoft says Purview-supported AI apps use existing controls so tenant data is not returned or used by an large language model (LLM) when the user lacks access.
Exact source quoteensure that data stored in your tenant is never returned to the user or used by a large language model (LLM) if the user doesn't have access to that data.
Related framework references (5)
What the vendor saysMicrosoft says Purview Endpoint data loss prevention (DLP) can warn or block browser-based sharing of sensitive information with third-party generative AI sites.
Exact source quoteWindows computers that are onboarded to Microsoft Purview can be configured for Endpoint data loss prevention (DLP) policies
Related framework references (5)
What the vendor saysMicrosoft says Purview Insider Risk Management has a risky AI usage policy template for prompt injection and protected-material access signals.
Exact source quoteUse the Risky AI usage policy template to detect risky usage that includes prompt injection attacks and accessing protected materials.
Related framework references (5)
What the vendor saysMicrosoft says supported AI agents inherit the same Purview security and compliance capabilities as their parent AI app.
Exact source quoteWhere these AI apps support agents, they inherit the same security and compliance capabilities as their parent AI app.
Related framework references (5)
Research findingMicrosoft Purview AI protection materials reviewed did not provide a clear Model Context Protocol (MCP), agent-to-agent (A2A), or agent-to-agent security control claim.
Related framework references (5)
Research findingMicrosoft Purview AI protection materials reviewed did not provide a clear non-human identity or service-account lifecycle security claim.
Related framework references (5)
What the vendor saysPalo Alto Networks claims centralized visibility and governance over agents, models, and interactions, including ownership, permissions, and least-privileged access.
Exact source quoteMove from pilots to production with full visibility and governance over every agent, model and interaction.
Related framework references (5)
What the vendor saysPalo Alto Networks claims automated AI red teaming for applications and agents using simulated real-world threats and security-vulnerability scanning.
Exact source quoteAI Red Teaming: Prisma AIRS Provides automated AI Red Teaming that you can use for scanning your AI applications or agents for security vulnerabilities.
Related framework references (5)
What the vendor saysPalo Alto Networks claims predeployment model and agent-artifact scanning across models, source code, Model Context Protocol (MCP) servers, and skills.
Exact source quoteScan supply chain vulnerabilities in agent artifacts, including agent code, MCP servers, and skills.
Related framework references (5)
What the vendor saysPalo Alto Networks claims centralized control of tool calls, large language model (LLM) interactions, and Model Context Protocol (MCP) connections with granular runtime policy enforcement.
Exact source quoteGain centralized control of tool calls, LLM interactions, and Model Context Protocol (MCP) connections — enforcing granular policies on how agents interact with systems.
Related framework references (5)
What the vendor saysPalo Alto Networks claims agent identity inventory and validation, accountable ownership, permissions, least-privileged access, and privilege revocation.
Exact source quoteInventory and validate the identities of agents operating in your enterprise. Define AI agent ownership, permissions and enforce least-privileged access for AI agents.
Related framework references (5)
What the vendor saysPalo Alto Networks claims agent artifact and endpoint security covering agent code, Model Context Protocol (MCP) servers, skills, local systems, files, and workflows.
Exact source quoteAgentic Endpoint Security extends protection to endpoints, governing how agents interact with local systems, files and workflows.
Related framework references (5)
What the vendor saysCisco claims standards-aligned findings, risk scoring, policy-driven gating, and compliance support across model, agent, and Model Context Protocol (MCP) workflows.
Exact source quoteFindings and protections map to leading frameworks, including MITRE ATLAS, OWASP Top 10 for LLMs, and NIST AI-RMF
Related framework references (5)
What the vendor saysCisco claims algorithmic red teaming for models and applications across more than 200 threat subcategories with model-specific guardrail generation.
Exact source quoteAutomatically test models and applications at AI scale with Cisco algorithmic red teaming.
Related framework references (5)
What the vendor saysCisco claims scanning of model files, repositories, datasets, Model Context Protocol (MCP) servers, and tools for malicious code, poisoning, backdoors, and compromised components before production.
Exact source quoteScan AI model files, repositories, and MCP servers for hidden risks before they are introduced into development or production.
Related framework references (5)
What the vendor saysCisco claims real-time Model Context Protocol (MCP) enforcement, tool allowlists and blocklists, and runtime policies across prompts, responses, agent actions, and tool calls.
Exact source quoteMCP runtime enforcement: Monitor and enforce safe behavior across MCP requests and responses connecting LLMs, agents, and tools.
Related framework references (5)