Public-source research
Vendor evidence
Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.
Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6
Showing 401–420 of 1280 evidence records
What the vendor saysNetskope claims an Model Context Protocol (MCP) Catalog and inventory spanning local, containerized, remote, and code-repository Model Context Protocol (MCP) servers with risk assessment and access controls.
Exact source quoteAn inventory of publicly available MCP servers (remote and code repositories).
Related framework references (5)
What the vendor saysNetskope claims an AI Gateway and Agentic Broker with real-time decoding, inspection, data loss prevention (DLP), guardrails, and granular blocking policies for prompts, responses, Model Context Protocol (MCP) servers, tools, and traffic.
Exact source quoteAdvanced real-time protection policy controls.
Related framework references (5)
What the vendor saysNetskope claims policy-based access control for autonomous non-human Model Context Protocol (MCP) interactions and visibility across Model Context Protocol (MCP) clients, servers, tools, resources, and prompt requests.
Exact source quoteScale your autonomous AI, and secure autonomous, non-human interactions, with unified visibility and control of public MCP servers.
Related framework references (5)
What the vendor saysNetskope claims real-time protection and data loss prevention (DLP) for Model Context Protocol (MCP) client applications including AI code editors and developer tools, with discovery and blocking of Model Context Protocol (MCP) servers, tools, resources, and requests.
Exact source quoteReal-time protection when using MCP client applications including AI code editors, chat interfaces, and developer tools.
Related framework references (5)
What the vendor saysZscaler claims AI asset management, AI bill of materials, posture and risk assessment, compliance heat maps, governance status, access policy, and data-lineage visibility across the AI lifecycle.
Exact source quoteDiscover and map your entire AI ecosystem, from shadow AI to risky apps, models, and pipelines.
Related framework references (5)
What the vendor saysZscaler claims automated red teaming across the AI lifecycle, including new adversarial testing for Model Context Protocol (MCP) servers and dynamic risk assessment.
Exact source quoteIntroduces AI red teaming for MCP servers, a standalone prompt hardening service, and compliance heat maps.
Related framework references (5)
What the vendor saysZscaler claims AI BOM discovery of models, Model Context Protocol (MCP) servers, development tools, and data pipelines plus risk scoring, codebase scanning, and Model Context Protocol (MCP) capability exposure analysis.
Exact source quoteAI BOM: Discover AI models, MCP servers, development tools, and data pipelines.
Related framework references (5)
What the vendor saysZscaler claims Model Context Protocol (MCP) and agent-to-agent (A2A) brokers, fine-grained agent access policy, prompt hardening, AI guardrails, and runtime protection across enterprise AI agents.
Exact source quoteSecure agentic communications through MCP and A2A brokers and enforce fine-grained access policies across every enterprise AI agent.
Related framework references (5)
What the vendor saysZscaler claims an AI Access Graph that maps AI-agent use of data and identities and enables fine-grained access policies for enterprise agents across Model Context Protocol (MCP) and agent-to-agent (A2A) communications.
Exact source quoteGet real-time visibility into how AI agents use data and identities, reducing unnecessary access.
Related framework references (5)
What the vendor saysZscaler claims endpoint discovery and protection for AI activity in browsers, extensions, and plugins plus agentic codebase scanning and Model Context Protocol (MCP) risk analysis for filesystem, network, and code-execution exposure.
Exact source quoteUncover risks in agentic codebases through code scanning, and extend visibility to AI activity on endpoints.
Related framework references (5)
What the vendor saysCheck Point AI Agent Security claims continuous agent inventory, holistic risk ratings, contributing-factor explanations, and risk mappings to OWASP and MITRE ATLAS.
Exact source quoteEvery discovered agent gets a holistic risk rating with the contributing factors explained.
Related framework references (5)
Research findingCheck Point AI Agent Security and Lakera Guard materials reviewed did not provide a public customer-facing product claim for automated adversarial testing, repeatable attack suites, or release-gate red teaming.
Related framework references (5)
What the vendor saysCheck Point AI Agent Security claims posture detection for unofficial, unknown, or vulnerable Model Context Protocol (MCP) servers, untrusted components, suspicious tool code, and likely-malicious tools.
Exact source quoteFlags unofficial, unknown, and vulnerable MCP servers, untrusted components, and suspicious or likely-malicious tool code.
Related framework references (5)
What the vendor saysCheck Point AI Agent Security claims real-time Guard application programming interface (API) screening and enforcement across prompts, tool calls, tool responses, tool descriptions, data leakage, content violations, and off-policy agent behavior.
Exact source quoteReal-time screening and flagging of prompt attacks, data leakage, content violations, and off-policy agent behavior through the Guard API.
Related framework references (5)
What the vendor saysCheck Point AI Agent Security claims tool allow or deny controls and posture findings for missing authentication, static credentials, and execution under an author’s credentials.
Exact source quoteTool Allow/Deny List limits available actions.
Related framework references (5)
Research findingCheck Point AI Agent Security and Lakera Guard materials reviewed did not establish controls specifically for coding-agent commands, developer-workstation files or networks, integrated development environment (IDE) extensions, hooks, secrets, or package actions.
Related framework references (5)
What the vendor saysLasso claims continuous agent discovery, AI bill of materials (AI-BOM) inventory, risk scoring, ownership, intent-aware policy, compliance mapping, audit logs, and cross-platform governance from code to runtime.
Exact source quoteA single source of truth for governing agentic AI from code to runtime.
Related framework references (5)
What the vendor saysLasso claims automated agentic red teaming with static, multi-turn, and high-agency attacks, deployment-pipeline integration, adaptive policy generation, and one-click testing.
Exact source quoteStress-test application logic through static, multi-turn, and high-agency attack to uncover vulnerabilities and build adaptive guardrails.
Related framework references (5)
What the vendor saysLasso claims an AI bill of materials (AI-BOM) spanning models, prompts, tools, Model Context Protocol (MCP) servers, frameworks, databases, services, guardrails, identity boundaries, and authorization policies, with continuous CI updates and supply-chain risk assessment.
Exact source quoteInventory every AI component, including models, MCP servers, delegated agents, databases, third-party tool connectors, identity boundaries, and authorization policies.
Related framework references (5)
What the vendor saysLasso claims an Model Context Protocol (MCP) security gateway and intent-aware runtime policy enforcement across agent actions, tools, application programming interfaces (APIs), external connections, indirect prompt injection, memory poisoning, permissions, and data loss prevention (DLP).
Exact source quoteLasso's open-source MCP Gateway provides a security layer for MCP connections.
Related framework references (5)