ASAI Security ResearchIndependent public-source research
Public reviewread only

Public-source research

Vendor evidence

Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.

Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6

Showing 1–19 of 19 evidence records

Clear all filters
KnosticAI governance, risk, and complianceSource checkedStrong public support for this requirement

Knostic claims need-to-know policy capture, knowledge classification, oversharing discovery, policy tuning, control validation, traceable decisions, audit reporting, and consistent enforcement across enterprise large language models (LLMs) and agents.

Explicitly captures and manages per-user, per-topic need-to-know policies.
KnosticAI assurance and adversarial testingNo supporting claim found

Knostic and AgentMesh materials reviewed did not provide a public product claim for automated adversarial testing of customer models or agents, repeatable attack suites, or release-gate red teaming.

No quoted source text is recorded for this claim.
KnosticAI model and supply-chain securitySource checkedStrong public support for this requirement

Knostic AgentMesh claims continuous discovery, version tracking, SHA-256 artifact identification, static-code scanning, and risk analysis for AI agent skills, Model Context Protocol (MCP) servers, integrated development environment (IDE) extensions, Claude Code plugins, and commands.

Continuously discovers, tracks, and scans AI agent skills, MCP servers, and IDE extensions for prompt injection and supply chain threats.
KnosticAI gateway, tool-connection, and runtime controlsSource checkedStrong public support for this requirement

Knostic Kirin claims runtime monitoring, prompt-injection blocking, unsafe-action prevention, least-privilege policy, and consistent guardrail enforcement across software as a service (SaaS), in-house, and Model Context Protocol (MCP) agents.

Track every agentic action and stop unsafe behavior in real time.
KnosticAI agent identity and permissionsSource checkedLimited public support for this requirement

Knostic claims OAuth-based agent authentication, agent-role to privilege mapping, least-privilege and need-to-know boundaries, and policy enforcement across software as a service (SaaS), in-house, and Model Context Protocol (MCP) agents.

Map agent roles to privileges and enforce need-to-know boundaries.
KnosticAI coding-agent and workstation securitySource checkedStrong public support for this requirement

Knostic claims endpoint guardrails plus AgentMesh scanning for coding assistants, Claude and Cursor skills, Model Context Protocol (MCP) servers, integrated development environment (IDE) extensions, plugins, commands, code injection, cryptomining, reverse shells, and other agentic supply-chain threats.

Scan skills, MCP servers, and extensions before they touch your agents.
KnosticAI-feature discovery in business applicationsNo supporting claim found

Knostic materials reviewed did not provide a public claim for software as a service (SaaS) AI inventory, embedded software as a service (SaaS) AI features, or third-party software as a service (SaaS) AI provider monitoring.

No quoted source text is recorded for this claim.
KnosticApproved AI usage monitoringSource checkedStrong public support for this requirement

Knostic claims comprehensive visibility for Copilot and other large language model (LLM)-based enterprise AI tools to identify oversharing, undersharing, and inference risks.

Knostic provides comprehensive visibility for Copilot and other LLM-based Enterprise AI tools, enabling enterprises to identify potential oversharing, undersharing and inference risks.
KnosticControls for unapproved AI useSource checkedStrong public support for this requirement

Knostic claims it detects shadow AI, blocks data exfiltration, and stops destructive commands.

We detect shadow AI, block data exfiltration, and stop destructive commands like rm -rf .
KnosticSensitive-data protection for generative AISource checkedStrong public support for this requirement

Knostic claims OpenClaw controls for secret leaks, PII exposure, inbound secrets, and file-read operations.

Blocks destructive commands Redacts secrets and API keys Prevents PII exposure Logs and flags inbound secrets Gates exec and file-read operations
KnosticBrowser and business-application controlsNo supporting claim found

Knostic materials reviewed did not provide a public claim for browser extension enforcement, enterprise browser controls, software as a service (SaaS)-session controls, or identity-aware software as a service (SaaS) policy.

No quoted source text is recorded for this claim.
KnosticGenerative AI application securitySource checkedLimited public support for this requirement

Knostic claims OpenAnt provides large language model (LLM)-powered vulnerability discovery for CI/CD pipelines with two-stage verification.

LLM-powered vulnerability discovery for CI/CD pipelines. Two-stage verification: Stage 1 detects, Stage 2 attacks - what survives is real
KnosticAction-taking agent monitoringSource checkedStrong public support for this requirement

Knostic claims discovery, detection and response, inventory, supply-chain, and posture management for coding agents and Model Context Protocol (MCP).

Agent discovery (Cursor, Claude, etc.) Detection & Response Inventory / Supply chain Security Posture Management Reputation service
KnosticAgent-to-agent communication securitySource checkedLimited public support for this requirement

Knostic claims it secures AI agents, coding assistants, Model Context Protocol (MCP) servers, skills, integrated development environment (IDE) extensions, and rules as associated supply-chain risks.

Knostic discovers and secures AI agents and coding assistants, as well as associated supply chain risks, including MCP servers, skills, IDE extensions, and rules.
KnosticNon-human identity and service-account securityNo supporting claim found

Knostic materials reviewed did not provide a public claim for non-human identity (NHI) ownership, service-account lifecycle, credential rotation, scoped credentials, or least-privilege governance.

No quoted source text is recorded for this claim.
KnosticLicensing modelNo supporting claim found

Knostic materials reviewed did not provide a public per-user, per-seat, platform, usage-based, or enterprise pricing model.

No quoted source text is recorded for this claim.
KnosticApproved AI platform contextSource checkedStrong public support for this requirement

Knostic claims it discovers and secures AI agents, coding assistants, and related supply-chain risks.

Knostic discovers and secures AI agents and coding assistants, as well as associated supply chain risks, including MCP servers, skills, IDE extensions, and rules.