Skip to content
ModulesModule 10

Agent Trust Assurance

Test an agent before production the way any other privileged system is tested, and re-test it when it changes.

Has it been tested, and is it still the version we approved?Phase 6 · Assurance

What it does

Capabilities

  • Security tests for prompt injection, privilege escalation, data leakage and unsafe external calls
  • Permission tests that try to exceed the role and cross the tenant boundary
  • Tool behaviour tests for dangerous calls the task never required
  • Regression testing between agent versions
  • Certification from development through internal, approved, production and high-risk
  • Recertification when the model, prompt, tools, MCP servers, permissions, data sources or owner change

What it leaves behind

Evidence produced

  • A certification record per agent version
  • A diff between versions with the resulting risk change

Certification, and what re-opens it

  • Development

    Under construction. No production data, no production tools.

  • Internal

    Cleared for internal use against non-regulated data.

  • Approved

    Passed security, permission and policy testing.

  • Production Certified

    Cleared to run production traffic under monitoring.

  • High-Risk Certified

    Cleared for sensitive actions, with the extra review that implies.

A change to any of these re-opens certification

The model changesThe prompt changes materiallyAn MCP server is addedA tool is addedPermissions are expandedA data source is addedExecution ability is grantedThe agent owner changes

Specification

Where this is specified

2 blueprint pages carry the specification for this module.

13 modules and services make up the platform. See how they fit together.