CrowdStrike
Charlotte AI and AgentWorks
The documented boundary is UNKNOWN with UNKNOWN operation. This describes authority and initiation, not effectiveness. No qualifying independent validation is recorded.
Evidence · autonomy · control · change
Decision intelligence for enterprise security teams evaluating agentic systems, grounded in canonical evidence and confirmed by human review.
Latest evidence-backed analysis
Agentic security is evolving into a control-plane problem: specialized agents, orchestration, model routing, evidence-producing validation, and governed action.
Read the full analysis →Confirmed intelligence
Decision intelligence
CrowdStrike
The documented boundary is UNKNOWN with UNKNOWN operation. This describes authority and initiation, not effectiveness. No qualifying independent validation is recorded.
Cisco
The documented boundary is UNKNOWN with UNKNOWN operation. This describes authority and initiation, not effectiveness. No qualifying independent validation is recorded.
Conifers.ai
The documented boundary is UNKNOWN with UNKNOWN operation. This describes authority and initiation, not effectiveness. No qualifying independent validation is recorded.
Palo Alto Networks
The documented boundary is APPROVAL-GATED with UNKNOWN operation. This describes authority and initiation, not effectiveness. No qualifying independent validation is recorded.
D3 Security
The documented boundary is UNKNOWN with UNKNOWN operation. This describes authority and initiation, not effectiveness. No qualifying independent validation is recorded.
Dropzone AI
The documented boundary is UNKNOWN with UNKNOWN operation. This describes authority and initiation, not effectiveness. No qualifying independent validation is recorded.
Coverage
CrowdStrike
Mission-ready agents plus a no-code agent construction and orchestration environment.
Cisco
Automated tier-one and tier-two investigation, classification, and response recommendation in Cisco XDR.
Conifers.ai
Integrated intelligence, hunting, detection, investigation, and remediation with staged autonomy.
Palo Alto Networks
XSOAR-derived agent platform with system and custom agents, actions, and MCP integration.
D3 Security
Single-engine investigation, triage, response, and configurable autonomy platform.
MCP-accessed assistant that evaluates coverage and drafts YARA-L rules.
Gemini-powered, analyst-initiated autonomous threat hunting in Google SecOps.
Embedded Google SecOps alert investigation assistant producing verdicts and reasoning.
SentinelOne
Automatically or manually triggered investigations with policy-governed response integration.
Microsoft
LLM-based alert classification and resolution for supported Defender workloads.
Microsoft
Governed catalog of Microsoft and partner security agents with scheduled or manual triggering.
Simbian
Vendor-described 24/7 firewall and network security operations agent.
How ASI earns trust
Research paths
Transparent evidence quality
NONE_FOUND is not NO. The current release contains20 vendor-documentation,10 vendor-claim, and2 third-party records.
Evidence health
✓ No open conflicts in the current public projection.