ASAI Security ResearchIndependent public-source research
Public reviewread only

Public-source research

Vendor evidence

Review what vendors say publicly, the exact quoted source text, the security requirement each statement may support, and what still needs verification.

Research library coverageCounts describe the research workflow, not vendor quality or product effectiveness.View details
Evidence records1280
Source checked863
Needs verification0
Source captured0
No supporting claim found411
Excluded from evidence6

Showing 1–19 of 19 evidence records

Clear all filters
RecoAI governance, risk, and complianceSource checkedStrong public support for this requirement

Reco claims continuous inventory, ownership and permission mapping, policy enforcement, audit visibility, posture assessment, and governance for approved and shadow AI agents across software as a service (SaaS) environments.

The platform automatically inventories every AI agent operating across your connected SaaS applications.
RecoAI assurance and adversarial testingNo supporting claim found

Reco AI agent and Model Context Protocol (MCP) security materials reviewed did not provide a public product claim for automated adversarial testing, repeatable attack suites, model or agent red teaming, or release-gate evaluation.

No quoted source text is recorded for this claim.
RecoAI model and supply-chain securitySource checkedLimited public support for this requirement

Reco claims discovery and mapping of Model Context Protocol (MCP) servers, tools, external integrations, OAuth grants, application programming interface (API) connections, data paths, scopes, and unauthorized trust relationships across AI agents and software as a service (SaaS) applications.

Reco makes them visible, showing exactly which systems are connected, what data flows between them, and where permission breakdowns exist.
RecoAI gateway, tool-connection, and runtime controlsSource checkedLimited public support for this requirement

Reco claims real-time observability, policy enforcement, misuse and prompt-injection alerting, permission control, and restriction or blocking of AI agents and Model Context Protocol (MCP) paths across connected software as a service (SaaS) environments.

Reco addresses these MCP security challenges through a combination of real-time observability, policy enforcement, and automated control over permissions and tool behavior.
RecoAI agent identity and permissionsSource checkedLimited public support for this requirement

Reco claims mapping of each AI agent to authorizing users, connected applications, OAuth grants, application programming interface (API) identities, permissions, data access, ownership, and policy status with least-privilege controls.

For each agent, Reco maps which SaaS applications it connects to, what permissions it holds, who authorized it, and what data it can access.
RecoAI coding-agent and workstation securitySource checkedLimited public support for this requirement

Reco claims discovery of coding agents and their Model Context Protocol (MCP), software as a service (SaaS), repository, OAuth, permission, identity, and data relationships, including Cursor connections to GitHub and other enterprise applications.

An MCP server created a connection between Slack and Cursor, producing a permissions breakdown where two applications share a trust relationship.
RecoUnapproved AI use discoverySource checkedStrong public support for this requirement

Reco claims it automatically discovers AI agents across Copilot, ChatGPT, Claude, Agentforce, Make, n8n, and custom integrations.

Complete Inventory Automatically discover every agent across Copilot, ChatGPT, Claude, Agentforce, Make, n8n, and custom integrations.
RecoAI-feature discovery in business applicationsSource checkedStrong public support for this requirement

Reco claims embedded AI in software as a service (SaaS) apps, generative AI tools, and copilots is expanding faster than teams can track and connects to enterprise data.

Embedded AI in your SaaS apps, GenAI tools, and copilots is expanding faster than your team can track. Every new feature connects to your data.
RecoApproved AI usage monitoringSource checkedStrong public support for this requirement

Reco claims AI security posture visibility across approved AI agents, software as a service (SaaS) applications, users, permissions, and data access.

Visibility and control over every agent from day one.
RecoControls for unapproved AI useSource checkedStrong public support for this requirement

Reco claims teams can sanction approved agents, block unauthorized ones, and enforce least-privilege policies across the enterprise ecosystem.

Sanction approved agents, block unauthorized ones, and enforce least-privilege policies across your enterprise ecosystem.
RecoSensitive-data protection for generative AISource checkedLimited public support for this requirement

Reco claims it identifies and mitigates data exposure risks across the agent and app ecosystem.

Identify and mitigate data exposure risks across your agent and app ecosystem.
RecoAction-taking agent monitoringSource checkedStrong public support for this requirement

Reco claims it maps every agent in the environment to its owner, permissions, and risk with lineage and context.

Know exactly what every agent in your environment can access, who owns it, and where the risk is. Before the next class of AI finds out first.
RecoAgent-to-agent communication securitySource checkedLimited public support for this requirement

Reco claims AI-agent risk reduction through mapping cross-app connections, permissions, and automated actions across software as a service (SaaS).

Cross-application connection mappings
RecoNon-human identity and service-account securitySource checkedLimited public support for this requirement

Reco claims it makes agents, integrations, and non-human identities visible and maps what they can access.

Every day, your business deploys more agents, integrations, and non-human identities. Most of them operate invisibly. Reco makes them visible, maps what they can access, and tells you when they deviate from policy, before they become a liability.
RecoBrowser and business-application controlsSource checkedStrong public support for this requirement

Reco claims user, software as a service (SaaS), browser extension, OAuth, and connected-app governance for AI-agent security.

Detects browser extensions and unapproved integrations