ASAI Security ResearchIndependent public-source research
Public reviewread only

Public-source research

Vendor evidence

Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.

Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6

Showing 341–360 of 1280 evidence records

Microsoft Purview DSPM for AI · Security requirement

Unapproved AI use discovery

Source checkedStrong public support for this requirement
What the vendor says

Microsoft claims Purview data security posture management (DSPM) and data security posture management (DSPM) for AI help discover, secure, and apply compliance controls for AI usage across the enterprise.

Exact source quote
discover, secure, and apply compliance controls for AI usage across your enterprise.
Microsoft Purview DSPM for AI · Security requirement

AI-feature discovery in business applications

Source checkedStrong public support for this requirement
What the vendor says

Microsoft says Purview-supported AI app categories include other AI apps detected through browser activity and categorized as generative AI in the Defender for Cloud Apps catalog.

Exact source quote
Other AI apps that are detected through browser activity and categorized as "Generative AI" in the Defender for Cloud Apps catalog.
Microsoft Purview DSPM for AI · Security requirement

Approved AI usage monitoring

Source checkedStrong public support for this requirement
What the vendor says

Microsoft claims supported AI app interactions can be monitored per user in the tenant and prompts and responses can flow into Purview activity views.

Exact source quote
Interactions using supported AI apps can be monitored for each user in your tenant.
Microsoft Purview DSPM for AI · Security requirement

Controls for unapproved AI use

Source checkedLimited public support for this requirement
What the vendor says

Microsoft says Endpoint data loss prevention (DLP) policies can warn or block users from sharing sensitive information with third-party generative AI sites accessed through a browser.

Exact source quote
warn or block users from sharing sensitive information with third-party generative AI sites that are accessed via a browser.
Microsoft Purview DSPM for AI · Security requirement

Sensitive-data protection for generative AI

Source checkedStrong public support for this requirement
What the vendor says

Microsoft says Purview-supported AI apps use existing controls so tenant data is not returned or used by an large language model (LLM) when the user lacks access.

Exact source quote
ensure that data stored in your tenant is never returned to the user or used by a large language model (LLM) if the user doesn't have access to that data.
Microsoft Purview DSPM for AI · Security requirement

Browser and business-application controls

Source checkedStrong public support for this requirement
What the vendor says

Microsoft says Purview Endpoint data loss prevention (DLP) can warn or block browser-based sharing of sensitive information with third-party generative AI sites.

Exact source quote
Windows computers that are onboarded to Microsoft Purview can be configured for Endpoint data loss prevention (DLP) policies
Microsoft Purview DSPM for AI · Security requirement

Generative AI application security

Source checkedLimited public support for this requirement
What the vendor says

Microsoft says Purview Insider Risk Management has a risky AI usage policy template for prompt injection and protected-material access signals.

Exact source quote
Use the Risky AI usage policy template to detect risky usage that includes prompt injection attacks and accessing protected materials.
Microsoft Purview DSPM for AI · Security requirement

Action-taking agent monitoring

Source checkedLimited public support for this requirement
What the vendor says

Microsoft says supported AI agents inherit the same Purview security and compliance capabilities as their parent AI app.

Exact source quote
Where these AI apps support agents, they inherit the same security and compliance capabilities as their parent AI app.
Microsoft Purview DSPM for AI · Security requirement

Agent-to-agent communication security

No supporting claim found
Research finding

Microsoft Purview AI protection materials reviewed did not provide a clear Model Context Protocol (MCP), agent-to-agent (A2A), or agent-to-agent security control claim.

Microsoft Purview DSPM for AI · Security requirement

Non-human identity and service-account security

No supporting claim found
Research finding

Microsoft Purview AI protection materials reviewed did not provide a clear non-human identity or service-account lifecycle security claim.

Palo Alto Networks Prisma AIRS · Security requirement

AI governance, risk, and compliance

Source checkedLimited public support for this requirement
What the vendor says

Palo Alto Networks claims centralized visibility and governance over agents, models, and interactions, including ownership, permissions, and least-privileged access.

Exact source quote
Move from pilots to production with full visibility and governance over every agent, model and interaction.
Palo Alto Networks Prisma AIRS · Security requirement

AI assurance and adversarial testing

Source checkedStrong public support for this requirement
What the vendor says

Palo Alto Networks claims automated AI red teaming for applications and agents using simulated real-world threats and security-vulnerability scanning.

Exact source quote
AI Red Teaming: Prisma AIRS Provides automated AI Red Teaming that you can use for scanning your AI applications or agents for security vulnerabilities.
Palo Alto Networks Prisma AIRS · Security requirement

AI model and supply-chain security

Source checkedStrong public support for this requirement
What the vendor says

Palo Alto Networks claims predeployment model and agent-artifact scanning across models, source code, Model Context Protocol (MCP) servers, and skills.

Exact source quote
Scan supply chain vulnerabilities in agent artifacts, including agent code, MCP servers, and skills.
Palo Alto Networks Prisma AIRS · Security requirement

AI gateway, tool-connection, and runtime controls

Source checkedStrong public support for this requirement
What the vendor says

Palo Alto Networks claims centralized control of tool calls, large language model (LLM) interactions, and Model Context Protocol (MCP) connections with granular runtime policy enforcement.

Exact source quote
Gain centralized control of tool calls, LLM interactions, and Model Context Protocol (MCP) connections — enforcing granular policies on how agents interact with systems.
Palo Alto Networks Prisma AIRS · Security requirement

AI agent identity and permissions

Source checkedStrong public support for this requirement
What the vendor says

Palo Alto Networks claims agent identity inventory and validation, accountable ownership, permissions, least-privileged access, and privilege revocation.

Exact source quote
Inventory and validate the identities of agents operating in your enterprise. Define AI agent ownership, permissions and enforce least-privileged access for AI agents.
Palo Alto Networks Prisma AIRS · Security requirement

AI coding-agent and workstation security

Source checkedLimited public support for this requirement
What the vendor says

Palo Alto Networks claims agent artifact and endpoint security covering agent code, Model Context Protocol (MCP) servers, skills, local systems, files, and workflows.

Exact source quote
Agentic Endpoint Security extends protection to endpoints, governing how agents interact with local systems, files and workflows.
Cisco AI Defense · Security requirement

AI governance, risk, and compliance

Source checkedLimited public support for this requirement
What the vendor says

Cisco claims standards-aligned findings, risk scoring, policy-driven gating, and compliance support across model, agent, and Model Context Protocol (MCP) workflows.

Exact source quote
Findings and protections map to leading frameworks, including MITRE ATLAS, OWASP Top 10 for LLMs, and NIST AI-RMF
Cisco AI Defense · Security requirement

AI assurance and adversarial testing

Source checkedStrong public support for this requirement
What the vendor says

Cisco claims algorithmic red teaming for models and applications across more than 200 threat subcategories with model-specific guardrail generation.

Exact source quote
Automatically test models and applications at AI scale with Cisco algorithmic red teaming.
Cisco AI Defense · Security requirement

AI model and supply-chain security

Source checkedStrong public support for this requirement
What the vendor says

Cisco claims scanning of model files, repositories, datasets, Model Context Protocol (MCP) servers, and tools for malicious code, poisoning, backdoors, and compromised components before production.

Exact source quote
Scan AI model files, repositories, and MCP servers for hidden risks before they are introduced into development or production.
Cisco AI Defense · Security requirement

AI gateway, tool-connection, and runtime controls

Source checkedStrong public support for this requirement
What the vendor says

Cisco claims real-time Model Context Protocol (MCP) enforcement, tool allowlists and blocklists, and runtime policies across prompts, responses, agent actions, and tool calls.

Exact source quote
MCP runtime enforcement: Monitor and enforce safe behavior across MCP requests and responses connecting LLMs, agents, and tools.