Public-source research
Vendor evidence
Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.
Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6
Akamai application programming interface (API) Security materials reviewed did not provide a public claim for agent registration, delegated authorization, scoped access, and revocation.
No quoted source text is recorded for this claim.
Related framework references (5)
Salt reports agent access-governance policies that control which agents may call which application programming interfaces (APIs).
control which agents could call which APIs
Related framework references (5)
Imperva AI Application Security materials reviewed did not provide a public claim for agent registration, delegated authorization, scoped access, and revocation.
No quoted source text is recorded for this claim.
Related framework references (5)
Kong claims identity verification and enforcement for agents participating in agent-to-agent (A2A) workflows.
Verify and enforce identity for every agent in your workflows
Related framework references (5)
Speakeasy claims SSO and role-based permissions down to individual Model Context Protocol (MCP) tools.
Permission down to the server, toolset, or individual tool.
Related framework references (5)
Harness AI Security materials reviewed did not provide a public claim for agent registration, delegated authorization, scoped access, and revocation.
No quoted source text is recorded for this claim.
Related framework references (5)
Wallarm AI Hypervisor claims revocation of compromised agent sessions using user identity or trace ID.
revokes compromised AI agent sessions by user identity or trace ID
Related framework references (5)
Cequence claims agent authentication followed by verification of every action and tool-scoped Agent Persona permissions.
AI Gateway authenticates agents and then verifies every action taken.
Related framework references (5)
Upwind materials reviewed did not provide a public claim for agent registration, delegated authorization, task-scoped access, and revocation.
No quoted source text is recorded for this claim.
Related framework references (5)
Proofpoint claims Model Context Protocol (MCP) authentication and approved-server registry controls but does not establish full agent identity lifecycle management.
maintains a registry of approved servers
Related framework references (5)
Securiti AI materials reviewed did not provide a public claim for agent registration, delegated authorization, task-scoped access, and revocation.
No quoted source text is recorded for this claim.
Related framework references (5)
Snyk Evo materials reviewed did not provide a public claim for agent registration, delegated authorization, task-scoped access, and revocation.
No quoted source text is recorded for this claim.
Related framework references (5)
ModelOp materials reviewed did not provide a public claim for agent registration, delegated authorization, task-scoped access, and revocation.
No quoted source text is recorded for this claim.
Related framework references (5)
LatticeFlow AI materials reviewed did not provide a public claim for agent registration, delegated authorization, task-scoped access, and revocation.
No quoted source text is recorded for this claim.
Related framework references (5)
Runlayer claims identity-aware access policy and scoped permissions for users and agents.
under which identity, budget, OAuth grant, and runtime conditions
Related framework references (5)
Keycard claims composite user, device, agent, and task identity with runtime policy and task-scoped credentials.
Identity = user + device + agent + task
Related framework references (5)
Palo Alto Networks claims agent identity inventory and validation, accountable ownership, permissions, least-privileged access, and privilege revocation.
Inventory and validate the identities of agents operating in your enterprise. Define AI agent ownership, permissions and enforce least-privileged access for AI agents.
Related framework references (5)
Cisco claims runtime policies that detect and block unsafe agent actions, unauthorized tool usage, and privilege escalation.
Prevent harmful or unintended agent actions by enforcing policies on tool invocation, privilege levels, and action chains.
Related framework references (5)
Microsoft Foundry claims automatic provisioning and lifecycle management of Entra agent identities, with Azure RBAC and token-based access for agent tool calls.
Microsoft Foundry automatically provisions and manages agent identities throughout the agent lifecycle.
Related framework references (5)
CrowdStrike claims access controls and policy enforcement across relationships among human and non-human identities, agents, models, Model Context Protocol (MCP) servers, and interactions.
AIDR provides unified visibility, real-time threat detection, data protection, access controls, and automated response.
Related framework references (5)