Public-source research
Vendor evidence
Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.
Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6
Showing 481–500 of 1280 evidence records
What the vendor saysNightfall claims employee and device attribution, agent-to-system access mapping, allowlisted Model Context Protocol (MCP) servers, granular tool authorization, and blocking of unapproved tools and connections.
Exact source quoteMap which employees use which agents, what systems they access, and track usage patterns over time.
Related framework references (5)
What the vendor saysNightfall claims controls for Cursor, VS Code, Claude, and custom Model Context Protocol (MCP) integrations including source-code and file inspection, embedded-secret redaction, server and tool allowlisting, version monitoring, request logging, and malicious-update quarantine.
Exact source quoteAutomatically discover and catalog all MCP servers across Claude Desktop, Cursor, VS Code, and custom integrations.
Related framework references (5)
What the vendor saysIsland claims unified visibility, governance, data protection, policy, audit, human oversight, usage analytics, and return on investment (ROI) reporting across browser, desktop, extension, network, embedded AI, and governed agents.
Exact source quoteEvery AI interaction across the organization is visible, governed, and protected from the start.
Related framework references (5)
Research findingIsland AI Services materials reviewed did not provide a public customer-facing product claim for automated adversarial testing, repeatable attack suites, model or agent red teaming, or release-gate evaluation.
Related framework references (5)
Research findingIsland AI Services materials reviewed did not establish model artifact scanning, provenance, signing, dependency or Model Context Protocol (MCP) component analysis, tamper detection, or model-registry release controls.
Related framework references (5)
What the vendor saysIsland claims one policy engine across AI browser, desktop, extensions, network, prompts, outputs, agents, and more than 500 governed Model Context Protocol (MCP) integrations with prompt-injection mitigation and human checkpoints.
Exact source quoteMCP Gateway with governed access to 500+ integrations.
Related framework references (5)
What the vendor saysIsland claims governed agents with defined workflows, scoped permissions, enterprise identity and policy inheritance, human-in-the-loop controls, and complete auditability.
Exact source quoteBuild, run, and share AI agents with full oversight, scoped permissions, and complete auditability.
Related framework references (5)
What the vendor saysIsland claims browser, desktop, extension, network, data loss prevention (DLP), and AI policy controls that protect proprietary source code and govern AI applications, locally running agents, outputs, and developer data movement.
Exact source quoteSensitive data is safeguarded before it ever reaches an AI provider, and AI responses are protected before they reach the user.
Related framework references (5)
What the vendor saysLayerX claims centralized policy and operational visibility across user and agent prompts, actions, identities, applications, and data exchanges in browsers, desktop apps, integrated development environments (IDEs), extensions, and on-device agents.
Exact source quoteControl every prompt, agent action, and data exchange across any browser, AI application and IDE.
Related framework references (5)
Research findingLayerX Interaction Security materials reviewed did not provide a public product claim for automated adversarial testing, repeatable attack suites, model or agent red teaming, or release-gate evaluation.
Related framework references (5)
Research findingLayerX Interaction Security materials reviewed did not establish model artifact scanning, provenance, signing, dependency or Model Context Protocol (MCP) component analysis, tamper detection, or model-registry release controls.
Related framework references (5)
What the vendor saysLayerX claims real-time last-mile monitoring, detection, blocking, data loss prevention (DLP), and adaptive policy across prompts, agent actions, data exchanges, AI applications, browsers, desktops, integrated development environments (IDEs), extensions, and on-device agents.
Exact source quoteMonitor, detect, block, and govern AI interactions in real time with adaptive controls.
Related framework references (5)
What the vendor saysLayerX claims contextual correlation of users, agents, identities, applications, and data with granular policy based on identity, data sensitivity, and risk.
Exact source quoteCorrelate prompts, actions, identities, applications, and data exchanges into a single security context.
Related framework references (5)
What the vendor saysLayerX claims discovery and governance of AI desktop apps, integrated development environments (IDEs), integrated development environment (IDE) extensions, browser extensions, on-device agents, prompts, actions, file transfers, copy and paste, and sensitive-data exchanges.
Exact source quoteLayerX Endpoint Agent extends coverage to AI desktop apps, IDEs, IDE extensions, and on-device agents.
Related framework references (5)
What the vendor saysAurascape claims unified discovery, inventory, policy, compliance, human and agent governance, audit conversations, identity and intent context, approved registries, and cross-channel data lineage for employee AI and built agents.
Exact source quoteOne platform that covers both sides of enterprise AI agent risk.
Related framework references (5)
What the vendor saysAurascape claims predeployment adversarial guardrail tests for prompt injection and jailbreak attempts plus code-path vulnerability checks against known CVEs.
Exact source quoteRuns adversarial guardrail tests and code-path vulnerability checks before an agent ships.
Related framework references (5)
What the vendor saysAurascape claims discovery of agents and Model Context Protocol (MCP) servers, a vetted custom registry, tool-poisoning detection, approved-call signing, unsigned-call blocking, and project-configuration supply-chain protection.
Exact source quoteWhitelist approved MCP servers and tools in a custom registry so only vetted endpoints are reachable.
Related framework references (5)
What the vendor saysAurascape claims an AI Proxy and Zero Bypass Model Context Protocol (MCP) Gateway that inspect prompts, responses, intent, tool calls, parameters, data exchanges, and results; sign approved calls; and block or sanitize policy violations before execution.
Exact source quoteThe Zero Bypass MCP Gateway signs approved tool calls and blocks unsigned ones.
Related framework references (5)
What the vendor saysAurascape claims context-aware tool policy based on user identity, account type, agent intent, entitlement, data sensitivity, OAuth roles and scopes, and approved-call signatures.
Exact source quoteContext-aware policy on identity, intent, entitlement, and data sensitivity.
Related framework references (5)
What the vendor saysAurascape claims local discovery for Claude Code and Cursor, source-code and unsafe-code protections, predeployment code-path testing, Model Context Protocol (MCP) registry and signing, tool-call enforcement, and data-lineage controls from first code through runtime.
Exact source quoteSecure every agent from first line of code through production runtime.
Related framework references (5)