Aiceberg · Aiceberg Guardian AgentInferred alignmenthigh confidence · 2 sources Aiceberg Guardian Agent provides runtime visibility and guardrail control over agentic AI decision flows.
AuditaAI assessment: runtime visibility and guardrail control over agentic decision flows is a preventive safeguard.
Amazon Bedrock AgentCore gives agents distinct scoped identities and uses Cedar policy to authorize every tool call and data access independently of model reasoning.
AuditaAI assessment: per-agent scoped identity and Cedar authorization enforce safeguards that reduce unauthorized tool and data access.
Amazon Bedrock AgentCore applies identity and authorization controls to agents using MCP and A2A communications with external tools and other agents.
AuditaAI assessment: identity and authorization controls over MCP and A2A communications provide safeguards for agent-to-tool and agent-to-agent interactions.
Cato Networks · Cato AI Security (AISEC)Inferred alignmenthigh confidence · 1 source Cato AI Security applies inline controls to block sensitive data exfiltration to unauthorized AI services and channels.
AuditaAI assessment: inline controls blocking sensitive-data exfiltration are direct preventive safeguards.
Cato Networks · Cato AI Security (AISEC)Inferred alignmenthigh confidence · 2 sources Cato AI Security governance controls constrain unsafe autonomous actions and high-risk tool usage for AI agents and applications.
AuditaAI assessment: governance controls constraining unsafe actions and high-risk tool usage are preventive safeguards.
Chainguard · Chainguard LibrariesInferred alignmenthigh confidence · 1 source Chainguard Libraries provides a malware-resistant dependency catalog intended to replace direct reliance on public package registries.
AuditaAI assessment: curated malware-resistant dependencies are preventive safeguards against compromised components.
Chainguard · Chainguard FactoryInferred alignmenthigh confidence · 1 source Chainguard Factory applies SHA-pinned source inputs, isolated SLSA L3 build controls, cryptographic signing, and reproducibility checks when producing artifacts.
AuditaAI assessment: pinned inputs, isolated builds, signing, and reproducibility checks protect artifact integrity.
Chainguard · Chainguard ContainersInferred alignmentmedium confidence · 1 source Chainguard Containers is positioned as a built-from-source container catalog designed to minimize known vulnerabilities in development and production pipelines.
AuditaAI assessment: hardened built-from-source container artifacts reduce exposure to known vulnerable components.
AI Agent Security governs which tools and MCP servers agents can use, and evaluates agent actions in context to help block unsafe or unauthorized behavior at runtime.
AuditaAI assessment: controls over tool/MCP access and contextual action blocking are preventive safeguards.
AI Agent Security helps detect prompt attacks, indirect injection, and sensitive data exposure across agent prompts, responses, and tool use.
AuditaAI assessment: runtime protection across prompts, responses, and tool use contributes preventive safeguards.
Check Point AI Security documents runtime enforcement that includes protection against harmful outputs in AI interactions.
AuditaAI assessment: runtime harmful-output protection is a preventive safeguard over AI interaction outputs.
Cisco · AI Runtime ProtectionInferred alignmenthigh confidence · 1 source AI Runtime Protection provides runtime guardrails for prompt and response threat mitigation.
AuditaAI assessment: prompt and response guardrails are preventive safeguards in runtime AI interaction flows.
Cisco · Cisco AI DefenseInferred alignmentmedium confidence · 1 source Cisco AI Defense includes AI access and policy controls as part of the platform's documented control surface.
AuditaAI assessment: AI access and policy controls provide preventative governance over permitted AI use paths.
Google Cloud · Model ArmorInferred alignmenthigh confidence · 1 source Model Armor scans prompts and responses for prompt injection and jailbreak content and can return a block verdict when a violation is detected.
AuditaAI assessment: prompt and jailbreak inspection with blocking provides runtime safeguards against adversarial interaction paths.
Google Cloud · Sensitive Data ProtectionInferred alignmenthigh confidence · 1 source Sensitive Data Protection classifies and de-identifies sensitive content used for model training, tuning, and generative AI prompts and responses.
AuditaAI assessment: de-identification and redaction of sensitive AI data are preventive safeguards against exposure.
Harmonic Security inspects user prompts in real time to detect sensitive enterprise information (PII, source code, financial data) and enforces redaction or blocking policies prior to transmission to external LLMs.
AuditaAI assessment: inline data redaction and exfiltration prevention are protective data security controls.
Lasso runtime enforcement can block prompt-injection attempts and prevent unsafe autonomous agent actions or unauthorized tool invocation.
AuditaAI assessment: runtime blocking of prompt injection and unsafe autonomous actions is a direct preventive safeguard.
Maxim AI · Bifrost AI GatewayInferred alignmenthigh confidence · 2 sources Bifrost centralizes MCP tool connections and enforces authentication, access-control, and governance policies for agent tool usage.
AuditaAI assessment: centralized MCP tool governance and access-control boundaries are preventive safeguards.
Runtime guardrails are applied to block prompt injection attack paths before harmful model behavior propagates.
AuditaAI assessment: runtime guardrails that block prompt injection are preventive safeguards against adversarial interaction abuse.
Azure AI Content Safety and Prompt Shields identify direct and indirect prompt injection and related unsafe prompt patterns before they reach downstream model behavior.
AuditaAI assessment: prompt-injection and unsafe-prompt filtering provide runtime safeguards that reduce exploitability of AI interactions.
Microsoft · Microsoft Foundry Agent ServiceInferred alignmenthigh confidence · 1 source Microsoft Foundry provisions distinct Entra agent identities and uses scoped access tokens and RBAC to authorize agent calls to MCP servers and downstream tools.
AuditaAI assessment: scoped tokens and RBAC authorization for MCP and downstream tool calls are preventive access safeguards.
Microsoft · Microsoft Foundry Agent ServiceInferred alignmenthigh confidence · 1 source Microsoft Foundry uses agent identities and audience-scoped tokens to authenticate Agent-to-Agent endpoints and allow downstream services to grant or deny access through RBAC.
AuditaAI assessment: audience-scoped tokens and RBAC enforcement on A2A endpoints provide communication-path safeguards.
NEO · Neo Security PlatformInferred alignmenthigh confidence · 1 source Neo Security Platform is positioned to prevent agentic threats by controlling unsafe runtime action paths and over-permissioned execution conditions.
AuditaAI assessment: controlling unsafe runtime action paths and over-permissioned execution conditions is a preventive safeguard.
Okta · Agent GatewayInferred alignmenthigh confidence · 1 source Okta Agent Gateway intercepts agent-to-tool and agent-to-API calls at runtime without requiring upstream application code changes.
AuditaAI assessment: runtime interception of agent tool and API calls applies safeguards that reduce unauthorized execution pathways.
Okta · Agent GatewayInferred alignmenthigh confidence · 1 source Okta Agent Gateway brokers dynamic short-lived tokens so AI agents do not handle long-lived static API keys.
AuditaAI assessment: brokering short-lived credentials instead of static API keys is a preventive safeguard for agent access control.
NVIDIA Corporation · NVIDIA NeMo GuardrailsInferred alignmenthigh confidence · 1 source NeMo Guardrails applies programmable dialog, topical, and safety rails to inspect and constrain input prompts and model responses in LLM applications.
AuditaAI assessment: programmable input and output safety rails are runtime safeguards that reduce unsafe model interaction paths.
NVIDIA Corporation · NVIDIA NemoClawInferred alignmenthigh confidence · 2 sources NemoClaw deploys supported autonomous agents from a digest-verified hardened blueprint with restrictive filesystem and process defaults, credential filtering, routed inference, state integrity checks, and operator approval for blocked network endpoints.
AuditaAI assessment: hardened defaults, integrity checks, scoped egress controls, and credential filtering enforce preventive safeguards on autonomous-agent execution.
NVIDIA Corporation · NVIDIA OpenShellInferred alignmenthigh confidence · 2 sources OpenShell runs autonomous agents in isolated sandboxes and enforces out-of-process filesystem, network, process, inference, credential, and skill policies at binary, destination, method, and path level, with developer-approved policy updates and an audit trail of allow and deny decisions.
AuditaAI assessment: out-of-process policy enforcement and sandbox boundaries protect against unauthorized filesystem, network, process, and credential operations.
OpenAI · OpenAI Guardrails PythonInferred alignmenthigh confidence · 1 source OpenAI Guardrails Python runs configurable checks on application inputs and outputs so failed checks can prevent an unsafe interaction from proceeding.
AuditaAI assessment: configurable input/output checks that can stop unsafe interactions are preventive safeguards.
Palo Alto Networks · Prisma AIRSInferred alignmenthigh confidence · 1 source Prisma AIRS applies real-time safeguards to AI prompts, responses, model interactions, agent actions, and data exposure paths.
AuditaAI assessment: real-time safeguards over prompts, responses, model interactions, agent actions, and data paths are protective cybersecurity controls.
Palo Alto Networks · AI Access SecurityInferred alignmenthigh confidence · 1 source AI Access Security classifies GenAI applications by sanction status and can revoke access or control upload and download actions based on risk and privilege.
AuditaAI assessment: sanction-aware access policy and transfer controls are safeguards that reduce GenAI application misuse and data exposure.
Snowflake Inc. · Cortex AI GatewayInferred alignmenthigh confidence · 3 sources Cortex AI Gateway centralizes access policy, authentication, and tool-permission controls across first-party and third-party MCP-connected agent workflows.
AuditaAI assessment: centralized authentication, access policy, and tool permissions are preventive safeguards over MCP-connected workflows.
Teleport · Teleport MCP Access & GovernanceInferred alignmenthigh confidence · 1 source Teleport proxies Model Context Protocol (MCP) server traffic and enforces granular role-based access control (RBAC) to allow or block specific tool calls based on string, regex, or glob patterns.
AuditaAI assessment: Zero trust access control, ephemeral credentials, and tool filtering safeguards protect AI infrastructure from unauthorized access.
Zenity · Runtime Boundaries and AIDRInferred alignmenthigh confidence · 2 sources Zenity runtime boundaries can block unsafe agent actions, including risky tool usage and unauthorized task execution.
AuditaAI assessment: runtime boundaries that block unsafe actions and risky tool usage are preventive safeguards.
Zenity · Runtime Boundaries and AIDRInferred alignmenthigh confidence · 2 sources Zenity identity-aware runtime boundaries can prevent sensitive data access and exposure by over-permissioned agents.
AuditaAI assessment: identity-aware boundaries preventing over-permissioned sensitive-data access are protective controls.
Zscaler · Zscaler AI BrokerInferred alignmenthigh confidence · 1 source Zscaler AI Broker secures agentic communications through MCP and A2A brokers and enforces fine-grained access policies across enterprise AI agents.
AuditaAI assessment: MCP and A2A broker access policies provide preventive safeguards across enterprise agent communication paths.
SPLX · SPLX Runtime GuardrailsInferred alignmenthigh confidence · 2 sources Zscaler AI Security runtime protection blocks prompt injection, data poisoning, and malicious URLs in AI interactions.
AuditaAI assessment: blocking malicious runtime inputs and URLs provides preventive safeguards for AI interaction channels.
Zscaler · Zscaler Data SecurityInferred alignmenthigh confidence · 1 source Zscaler Data Security inspects AI usage and prompts and can block risky access or enforce prompt DLP to prevent data loss.
AuditaAI assessment: prompt DLP and risky-access blocking enforce preventative safeguards against sensitive-data loss.
Zscaler · Zscaler AI SecurityInferred alignmenthigh confidence · 1 source Zscaler AI Security can warn, block, or isolate user access to AI applications under acceptable-use and data-protection policies.
AuditaAI assessment: warn, block, and isolate controls are safeguards that reduce unsafe AI-application use.