ASAI Security ResearchIndependent public-source research
Public reviewread only

Public-source research

Vendor evidence

Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.

Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6

Showing 701–720 of 1280 evidence records

Reco · Security requirement

Approved AI usage monitoring

Source checkedStrong public support for this requirement
What the vendor says

Reco claims AI security posture visibility across approved AI agents, software as a service (SaaS) applications, users, permissions, and data access.

Exact source quote
Visibility and control over every agent from day one.
Reco · Security requirement

Controls for unapproved AI use

Source checkedStrong public support for this requirement
What the vendor says

Reco claims teams can sanction approved agents, block unauthorized ones, and enforce least-privilege policies across the enterprise ecosystem.

Exact source quote
Sanction approved agents, block unauthorized ones, and enforce least-privilege policies across your enterprise ecosystem.
Reco · Security requirement

Sensitive-data protection for generative AI

Source checkedLimited public support for this requirement
What the vendor says

Reco claims it identifies and mitigates data exposure risks across the agent and app ecosystem.

Exact source quote
Identify and mitigate data exposure risks across your agent and app ecosystem.
Reco · Security requirement

Action-taking agent monitoring

Source checkedStrong public support for this requirement
What the vendor says

Reco claims it maps every agent in the environment to its owner, permissions, and risk with lineage and context.

Exact source quote
Know exactly what every agent in your environment can access, who owns it, and where the risk is. Before the next class of AI finds out first.
Reco · Security requirement

Agent-to-agent communication security

Source checkedLimited public support for this requirement
What the vendor says

Reco claims AI-agent risk reduction through mapping cross-app connections, permissions, and automated actions across software as a service (SaaS).

Exact source quote
Cross-application connection mappings
Reco · Security requirement

Non-human identity and service-account security

Source checkedLimited public support for this requirement
What the vendor says

Reco claims it makes agents, integrations, and non-human identities visible and maps what they can access.

Exact source quote
Every day, your business deploys more agents, integrations, and non-human identities. Most of them operate invisibly. Reco makes them visible, maps what they can access, and tells you when they deviate from policy, before they become a liability.
Lakera / Check Point · Security requirement

Unapproved AI use discovery

Source checkedStrong public support for this requirement
What the vendor says

Lakera claims Workforce AI Security discovers shadow AI and stops sensitive data exposure across AI apps, browser extensions, desktop agents, integrated development environments (IDEs), and Model Context Protocol (MCP)-connected tools.

Exact source quote
Discover shadow AI, assess risk, govern employee usage, and stop sensitive data exposure across AI apps, browser extensions, desktop agents, IDEs, and MCP-connected tools.
Lakera / Check Point · Security requirement

AI-feature discovery in business applications

Source checkedStrong public support for this requirement
What the vendor says

Lakera claims workforce AI visibility and policy enforcement across AI apps, browser extensions, desktop agents, integrated development environments (IDEs), Model Context Protocol (MCP)-connected tools, and software as a service (SaaS) services.

Exact source quote
Employee AI usage is spreading faster than traditional controls can keep up — across browser tools, desktop apps, copilots, IDEs, and connected SaaS services.
Lakera / Check Point · Security requirement

Approved AI usage monitoring

Source checkedLimited public support for this requirement
What the vendor says

Lakera claims employee AI usage includes approved and unapproved tools across browser, desktop, and software as a service (SaaS).

Exact source quote
Teams are using sanctioned and unsanctioned AI tools across the browser, desktop, and SaaS.
Lakera / Check Point · Security requirement

Controls for unapproved AI use

Source checkedStrong public support for this requirement
What the vendor says

Lakera claims security teams need policy by app, user, data type, and action for employee AI usage.

Exact source quote
Security teams need policy by app, user, data type, and action — not blanket allow or block decisions.
Lakera / Check Point · Security requirement

Sensitive-data protection for generative AI

Source checkedStrong public support for this requirement
What the vendor says

Lakera claims Workforce AI Security stops sensitive data exposure across AI apps, browser extensions, desktop agents, integrated development environments (IDEs), and Model Context Protocol (MCP)-connected tools.

Exact source quote
Discover shadow AI, assess risk, govern employee usage, and stop sensitive data exposure across AI apps, browser extensions, desktop agents, IDEs, and MCP-connected tools.
Lakera / Check Point · Security requirement

Action-taking agent monitoring

Source checkedStrong public support for this requirement
What the vendor says

Lakera claims AI-agent landscape discovery, risk assessment, and real-time protection enforcement.

Exact source quote
Discover your agent landscape, assess risk, and enforce protection in real time.
Lakera / Check Point · Security requirement

Agent-to-agent communication security

Source checkedRelated public context only
What the vendor says

Lakera claims AI Agent Security provides visibility into agent usage and Model Context Protocol (MCP)-connected systems, adjacent to agent-to-tool security.

Exact source quote
AI Agent Security provides visibility into agent usage and MCP-connected systems across your environment, including agents your teams did not explicitly build or register.
Zenity · Security requirement

Unapproved AI use discovery

Source checkedStrong public support for this requirement
What the vendor says

Zenity claims full inventory and attribution of AI agents across platforms, including creators, tools, accessed systems, roles, permissions, runtime activity, and shadow AI.

Exact source quote
Zenity provides full inventory and attribution of AI agents across platforms including who created them, what tools they use, and what systems they access. You can drill into user roles, permissions, and runtime activity to track usage and uncover shadow AI.
Zenity · Security requirement

AI-feature discovery in business applications

Source checkedLimited public support for this requirement
What the vendor says

Zenity claims coverage spans software as a service (SaaS), home-grown agentic platforms, and end-user devices.

Exact source quote
Security and governance across all environments - SaaS, home-grown agentic platforms (Cloud), and end-user devices (Endpoint) - with unified visibility, policy control, and threat prevention.
Zenity · Security requirement

Approved AI usage monitoring

Source checkedStrong public support for this requirement
What the vendor says

Zenity claims full-stack observability for approved and shadow AI, including inventory, owners, prompts, actions, and runtime activity.

Exact source quote
Know which agents exist, who owns them, what they can access, and how they behave across your environment.
Zenity · Security requirement

Controls for unapproved AI use

Source checkedLimited public support for this requirement
What the vendor says

Zenity claims intent-based detection examines execution paths, including tool calls, memory access, data usage, and control flow, to identify malicious or unintended outcomes.

Exact source quote
By examining the full execution path - including tool calls, memory access, data usage, and control flow - Zenity identifies malicious or unintended outcomes even when inputs look harmless. This intent-focused approach exposes attacks that prompt-based firewalls miss.
Zenity · Security requirement

Sensitive-data protection for generative AI

Source checkedStrong public support for this requirement
What the vendor says

Zenity claims it identifies when AI agents access or expose sensitive data and lets teams flag, redact, or block unsafe behavior.

Exact source quote
Zenity identifies when AI agents access or expose PHI, PII, PCI, or hardcoded secrets
Zenity · Security requirement

Action-taking agent monitoring

Source checkedStrong public support for this requirement
What the vendor says

Zenity claims it monitors step-level agent execution and enforces inline controls to stop unsafe actions.

Exact source quote
Monitor step-level agent execution, correlate behavior with context, and enforce inline controls to stop unsafe actions before they impact the business