Public-source research
Vendor evidence
Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.
Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6
Keycard materials reviewed did not provide a public claim for enterprise-wide discovery of unapproved AI use.
No quoted source text is recorded for this claim.
Related framework references (5)
Keycard materials reviewed did not provide a public claim for embedded AI discovery across the business-application environment.
No quoted source text is recorded for this claim.
Related framework references (5)
Keycard claims visibility and attribution for agent actions, tool calls, policy decisions, and data access.
See every action your agents take. Know exactly who authorized it.
Related framework references (5)
Keycard materials reviewed did not provide a public claim for policy enforcement over unapproved AI use.
No quoted source text is recorded for this claim.
Related framework references (5)
Keycard materials reviewed did not provide a public claim for inspection or enforcement over sensitive data moving through AI.
No quoted source text is recorded for this claim.
Related framework references (5)
Keycard materials reviewed did not provide a public claim for browser or software as a service (SaaS)-session controls for employee AI use.
No quoted source text is recorded for this claim.
Related framework references (5)
Keycard materials reviewed did not provide a public claim for security controls for custom generative AI applications at runtime.
No quoted source text is recorded for this claim.
Related framework references (5)
Keycard materials reviewed did not provide a public claim for enterprise AI governance, risk, approval, and compliance workflows.
No quoted source text is recorded for this claim.
Related framework references (5)
Keycard materials reviewed did not provide a public claim for adversarial testing or release assurance for AI systems.
No quoted source text is recorded for this claim.
Related framework references (5)
Keycard materials reviewed did not provide a public claim for model and AI component supply-chain inspection.
No quoted source text is recorded for this claim.
Related framework references (5)
Keycard claims authentication and task-scoped access controls for Model Context Protocol (MCP), CLI, application programming interface (API), and downstream services.
Add auth to any agent surface - MCP, CLI, or API.
Related framework references (5)
Keycard claims a real-time event stream of agent actions, tool calls, policy decisions, and attributed audit events.
A real-time event stream of every agent action, tool call, and policy decision.
Related framework references (5)
Keycard claims authentication for agent-to-agent delegation while preserving user identity.
Announcing Keycard for Multi-Agent Apps
Related framework references (5)
Keycard claims workload attestation and short-lived credentials that avoid long-lived secrets and over-permissioned service accounts.
No long-lived secrets, no over-permissioned service accounts.
Related framework references (5)
Keycard claims composite user, device, agent, and task identity with runtime policy and task-scoped credentials.
Identity = user + device + agent + task
Related framework references (5)
Keycard claims governance of coding-agent shell, script, Model Context Protocol (MCP), environment, credential, and audit paths.
keycard run virtualizes .env and mcp.json so credentials never hit disk, and every execution path is audited.
Related framework references (5)