AI Security ResearchIndependent public-source research

Site information

Third-Party Notices

The project distinguishes original analysis from third-party publications, names, statements, and licensed adaptations. A reference or attribution does not imply endorsement.

Effective July 25, 2026

Original project material

Original research prose, selection, organization, and interface material are all rights reserved except where this page or an individual item states otherwise. The OWASP landscape-derived portions identified below are separately licensed. No blanket open-source or Creative Commons license applies to the research corpus, vendor excerpts, source documents, trademarks, or remaining site content.

Vendor sources and trademarks

Vendor statements are short excerpts or summaries linked to their original public sources for review. Product names, company names, publication titles, and trademarks belong to their respective owners and are used only to identify the subject or source. No listed organization sponsors, endorses, or is affiliated with this project.

OWASP publications

The deployed research references and summarizes the OWASP Top 10 for Large Language Model Applications and the OWASP Top 10 for Agentic Applications.

It also uses selected material from AI Security Solutions Landscape for LLM and Gen AI Apps and AI Security Solutions Landscape for Agentic AI Applications, created by the OWASP GenAI Security Project and contributors. The project selected, reorganized, summarized, and mapped that landscape material. Those landscape-derived portions are offered under the Creative Commons Attribution-ShareAlike 4.0 International license. See the official landscape source. OWASP does not endorse this project.

NIST and MITRE references

The research references the NIST AI Risk Management Framework Playbook, NIST Cybersecurity Framework 2.0 (NIST CSWP 29), and MITRE ATLAS. Names and identifiers connect original project analysis to the authoritative sources. The official MITRE ATLAS data license identifies Copyright 2021–2026 MITRE and the Apache License 2.0 for the `atlas-data` repository used for these identifiers. Source-specific notices and third-party rights continue to apply. Neither NIST nor MITRE endorses this project.

ISO and CIS identifiers

The deployed research uses ISO/IEC 42001 clause identifiers and CIS Critical Security Controls® safeguard identifiers as factual reference pointers. It does not reproduce ISO standard text, CIS safeguard titles, implementation-group values, or assessment text. The identifiers and links do not license the underlying publications, which remain subject to their owners' terms. This project has not been authorized, sponsored, or otherwise approved by CIS. ISO, IEC, and CIS do not endorse this project.

CSA and The Open Group references

The deployed framework catalog uses the name and selected factual identifiers of the CSA AI Controls Matrix and a high-level reference to Open FAIR™. Open FAIR™ is a trademark of The Open Group. The site does not publish the underlying CSA catalog or Open FAIR standards. Those works and marks remain subject to their owners' terms; this site does not claim a commercial license or endorsement from the Cloud Security Alliance or The Open Group.

Open-source software

The application uses open-source software packages under their respective licenses. Those package licenses apply to the packages themselves and do not license the site's research content, third-party source material, or trademarks.

Rights-holder and correction requests

Email info@vendorsignal.io with the source URL, the material at issue, and the requested correction or removal.