agent · AI Security
Sectricity RedSOC Platform
Indexed12 or more fields evidenced; not yet scored by a human against the rubric
13 fields evidenced · 42 with no public information. Every value below links to the document it came from and the date we checked it.
Trust gap
How this is scoredThese scores are automated. They measure how many fields this entry answers with a citation — not what those answers say. No one has scored this entry against the rubric yet.
Runtime governance
unscored
Are scope, spend, and authority enforced while the agent runs?
Audit trail
2/3 auto
Is there a tamper-evident record of what it actually did?
Scored from 2 evidenced field(s): audit_trail, explainability. Automated score; capped at 2 pending review.
Compliance
unscored
Are compliance obligations attached per engagement?
Outcome settlement
unscored
Does payment depend on a verified result?
Insurance & indemnity
unscored
Can the deployment be insured, and is the customer indemnified?
Assurance
- Insurance available
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Insurance carriers
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Coverage limits
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Indemnification
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Liability cap
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Audit trail
- yes — audit-grade reports with named tester, scope, methodology, findings, and remediation advice
“Audit-Grade Rapportering Elke opdracht resulteert in een auditklaar rapport met benoemde lead tester, scope, methodologie, bevindingen en remediatieadvies.”
sectricity.com · checked Aug 1, 2026 - Tamper-evident log
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Explainability
- yes — reports include methodology, findings, and rationale for remediation advice
“Audit-Grade Rapportering Elke opdracht resulteert in een auditklaar rapport met benoemde lead tester, scope, methodologie, bevindingen en remediatieadvies.”
sectricity.com · checked Aug 1, 2026 - Runtime governance
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Permission scopes
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Compliance certifications
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Regulatory alignment
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Outcome-based pricing
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Settlement mechanism
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Dispute process
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- SLA terms
- 1-day average time from request to start (SLA for responsiveness)
“1D Gemiddelde tijd van aanvraag tot start”
sectricity.com · checked Aug 1, 2026 - Evaluation coverage
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
Agency
- Autonomy level
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Human oversight
- human validation is always performed by ethical hackers; AI framework accelerates context building but does not replace human oversight
“Onze hackers verifiëren wat in je concrete omgeving uitbuitbaar is, filteren false positives en geven aan wat eerst moet worden opgelost. Onze hackers werken met ons eigen AI research framework om sneller context te bouwen, maar de validatie is altijd menselijk.”
sectricity.com · checked Aug 1, 2026 - Goal complexity
- multi-step (finding chained logic flaws, manipulating payment flows, identifying multiple interdependent vulnerabilities)
“Onze hackers vinden broken authorization, IDOR, race conditions, manipulatie van betaalflows en chained logic flaws die geen tool detecteert.”
sectricity.com · checked Aug 1, 2026 - Action space
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Operating environment
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Initiative
- can self-initiate upon triggering events (new asset, feature, change, scanner finding)
“Start een menselijke security test zodra een nieuwe asset, feature of wijziging live gaat.”
sectricity.com · checked Aug 1, 2026
Safety
- Safety evaluations
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Red teaming
- yes — red teaming is a core service offering, implying internal adversarial testing
“Social Engineering en Red Team Het menselijke aanvalsoppervlak is onzichtbaar voor scanners. Phishing, vishing, fysieke intrusie, volledige red team scenario's met assumed breach.”
sectricity.com · checked Aug 1, 2026 - Safety policy
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Usage restrictions
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Model or system card
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Incident reporting
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Third-party evaluations
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Data handling
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
Practicality
- Pricing model
- usage-based (credits per test)
“RedSOC werkt met een transparant creditmodel: je betaalt alleen voor wat je gebruikt, zonder vaste jaarcontracten.”
sectricity.com · checked Aug 1, 2026 - Price point
- customized per environment (no fixed public price, but transparent credit model after intake)
“Na een korte intake weet je exact hoeveel credits een test kost voor jouw omgeving.”
sectricity.com · checked Aug 1, 2026 - Availability
- GA (general availability — active engagements, on-demand console, demo available)
“Demo Aanvragen RedSOC On-Demand Console Lopende Engagements ACTIEF”
sectricity.com · checked Aug 1, 2026 - Deployment options
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Integrations
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Supported regions
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Support model
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
Foundation models
- Base models
- proprietary AI research framework (no specific model named)
“versneld door ons AI research framework”
sectricity.com · checked Aug 1, 2026 - Model provider
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Model swappable
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Open weights
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Fine-tuning
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Context window
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
Ecosystem
- Protocols supported
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Tool use
- uses internal AI framework to build context faster (tool use for research acceleration)
“Onze hackers werken met ons eigen AI research framework om sneller context te bouwen”
sectricity.com · checked Aug 1, 2026 - Multi-agent
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- API access
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Open source
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Marketplace presence
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
Impact
- User base
- at least 12 active or validated engagements this quarter (3 in progress + 7 validated + 2 in triage)
“ACTIEF 3 Tests in uitvoering 7 Gevalideerd dit kwartaal 2 In triage”
sectricity.com · checked Aug 1, 2026 - Deployment scale
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Target sectors
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- High-risk domains
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this
- Documented incidents
- no public informationsectricity.com · checked Aug 1, 2026 · source did not state this