ASAI Security ResearchIndependent public-source research
Public reviewread only

Public-source research

Vendor evidence

Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.

Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6

Showing 481–500 of 1280 evidence records

Nightfall AI · Security requirement

AI agent identity and permissions

Source checkedLimited public support for this requirement
What the vendor says

Nightfall claims employee and device attribution, agent-to-system access mapping, allowlisted Model Context Protocol (MCP) servers, granular tool authorization, and blocking of unapproved tools and connections.

Exact source quote
Map which employees use which agents, what systems they access, and track usage patterns over time.
Nightfall AI · Security requirement

AI coding-agent and workstation security

Source checkedStrong public support for this requirement
What the vendor says

Nightfall claims controls for Cursor, VS Code, Claude, and custom Model Context Protocol (MCP) integrations including source-code and file inspection, embedded-secret redaction, server and tool allowlisting, version monitoring, request logging, and malicious-update quarantine.

Exact source quote
Automatically discover and catalog all MCP servers across Claude Desktop, Cursor, VS Code, and custom integrations.
Island Enterprise Browser · Security requirement

AI governance, risk, and compliance

Source checkedStrong public support for this requirement
What the vendor says

Island claims unified visibility, governance, data protection, policy, audit, human oversight, usage analytics, and return on investment (ROI) reporting across browser, desktop, extension, network, embedded AI, and governed agents.

Exact source quote
Every AI interaction across the organization is visible, governed, and protected from the start.
Island Enterprise Browser · Security requirement

AI assurance and adversarial testing

No supporting claim found
Research finding

Island AI Services materials reviewed did not provide a public customer-facing product claim for automated adversarial testing, repeatable attack suites, model or agent red teaming, or release-gate evaluation.

Island Enterprise Browser · Security requirement

AI model and supply-chain security

No supporting claim found
Research finding

Island AI Services materials reviewed did not establish model artifact scanning, provenance, signing, dependency or Model Context Protocol (MCP) component analysis, tamper detection, or model-registry release controls.

Island Enterprise Browser · Security requirement

AI gateway, tool-connection, and runtime controls

Source checkedStrong public support for this requirement
What the vendor says

Island claims one policy engine across AI browser, desktop, extensions, network, prompts, outputs, agents, and more than 500 governed Model Context Protocol (MCP) integrations with prompt-injection mitigation and human checkpoints.

Exact source quote
MCP Gateway with governed access to 500+ integrations.
Island Enterprise Browser · Security requirement

AI agent identity and permissions

Source checkedLimited public support for this requirement
What the vendor says

Island claims governed agents with defined workflows, scoped permissions, enterprise identity and policy inheritance, human-in-the-loop controls, and complete auditability.

Exact source quote
Build, run, and share AI agents with full oversight, scoped permissions, and complete auditability.
Island Enterprise Browser · Security requirement

AI coding-agent and workstation security

Source checkedLimited public support for this requirement
What the vendor says

Island claims browser, desktop, extension, network, data loss prevention (DLP), and AI policy controls that protect proprietary source code and govern AI applications, locally running agents, outputs, and developer data movement.

Exact source quote
Sensitive data is safeguarded before it ever reaches an AI provider, and AI responses are protected before they reach the user.
LayerX Security · Security requirement

AI governance, risk, and compliance

Source checkedLimited public support for this requirement
What the vendor says

LayerX claims centralized policy and operational visibility across user and agent prompts, actions, identities, applications, and data exchanges in browsers, desktop apps, integrated development environments (IDEs), extensions, and on-device agents.

Exact source quote
Control every prompt, agent action, and data exchange across any browser, AI application and IDE.
LayerX Security · Security requirement

AI assurance and adversarial testing

No supporting claim found
Research finding

LayerX Interaction Security materials reviewed did not provide a public product claim for automated adversarial testing, repeatable attack suites, model or agent red teaming, or release-gate evaluation.

LayerX Security · Security requirement

AI model and supply-chain security

No supporting claim found
Research finding

LayerX Interaction Security materials reviewed did not establish model artifact scanning, provenance, signing, dependency or Model Context Protocol (MCP) component analysis, tamper detection, or model-registry release controls.

LayerX Security · Security requirement

AI gateway, tool-connection, and runtime controls

Source checkedStrong public support for this requirement
What the vendor says

LayerX claims real-time last-mile monitoring, detection, blocking, data loss prevention (DLP), and adaptive policy across prompts, agent actions, data exchanges, AI applications, browsers, desktops, integrated development environments (IDEs), extensions, and on-device agents.

Exact source quote
Monitor, detect, block, and govern AI interactions in real time with adaptive controls.
LayerX Security · Security requirement

AI agent identity and permissions

Source checkedLimited public support for this requirement
What the vendor says

LayerX claims contextual correlation of users, agents, identities, applications, and data with granular policy based on identity, data sensitivity, and risk.

Exact source quote
Correlate prompts, actions, identities, applications, and data exchanges into a single security context.
LayerX Security · Security requirement

AI coding-agent and workstation security

Source checkedLimited public support for this requirement
What the vendor says

LayerX claims discovery and governance of AI desktop apps, integrated development environments (IDEs), integrated development environment (IDE) extensions, browser extensions, on-device agents, prompts, actions, file transfers, copy and paste, and sensitive-data exchanges.

Exact source quote
LayerX Endpoint Agent extends coverage to AI desktop apps, IDEs, IDE extensions, and on-device agents.
Aurascape · Security requirement

AI governance, risk, and compliance

Source checkedStrong public support for this requirement
What the vendor says

Aurascape claims unified discovery, inventory, policy, compliance, human and agent governance, audit conversations, identity and intent context, approved registries, and cross-channel data lineage for employee AI and built agents.

Exact source quote
One platform that covers both sides of enterprise AI agent risk.
Aurascape · Security requirement

AI assurance and adversarial testing

Source checkedStrong public support for this requirement
What the vendor says

Aurascape claims predeployment adversarial guardrail tests for prompt injection and jailbreak attempts plus code-path vulnerability checks against known CVEs.

Exact source quote
Runs adversarial guardrail tests and code-path vulnerability checks before an agent ships.
Aurascape · Security requirement

AI model and supply-chain security

Source checkedStrong public support for this requirement
What the vendor says

Aurascape claims discovery of agents and Model Context Protocol (MCP) servers, a vetted custom registry, tool-poisoning detection, approved-call signing, unsigned-call blocking, and project-configuration supply-chain protection.

Exact source quote
Whitelist approved MCP servers and tools in a custom registry so only vetted endpoints are reachable.
Aurascape · Security requirement

AI gateway, tool-connection, and runtime controls

Source checkedStrong public support for this requirement
What the vendor says

Aurascape claims an AI Proxy and Zero Bypass Model Context Protocol (MCP) Gateway that inspect prompts, responses, intent, tool calls, parameters, data exchanges, and results; sign approved calls; and block or sanitize policy violations before execution.

Exact source quote
The Zero Bypass MCP Gateway signs approved tool calls and blocks unsigned ones.
Aurascape · Security requirement

AI agent identity and permissions

Source checkedLimited public support for this requirement
What the vendor says

Aurascape claims context-aware tool policy based on user identity, account type, agent intent, entitlement, data sensitivity, OAuth roles and scopes, and approved-call signatures.

Exact source quote
Context-aware policy on identity, intent, entitlement, and data sensitivity.
Aurascape · Security requirement

AI coding-agent and workstation security

Source checkedStrong public support for this requirement
What the vendor says

Aurascape claims local discovery for Claude Code and Cursor, source-code and unsafe-code protections, predeployment code-path testing, Model Context Protocol (MCP) registry and signing, tool-call enforcement, and data-lineage controls from first code through runtime.

Exact source quote
Secure every agent from first line of code through production runtime.