agent · ai security
Secra vs Tellumen Agent
55 fields both were evaluated on, 29 of them different — including where one discloses something the other does not. Every value links to the document it came from. 26 further fields are disclosed by neither and are listed at the end rather than tabled.
Assurance
| Field | Secra | Tellumen Agent |
|---|---|---|
| Audit trail· | Vendor states audit logs can be exported alongside block-rate tracking “track block rates, and export audit logs”www.sec-ra.com · checked Aug 2, 2026 | “Records a timestamped attestation of intent before a payment happens, so there is a real record of what was authorized if a dispute arises later.”tellumen.vercel.app · checked Aug 2, 2026 |
| Explainability· | “Every scan returns a 0-100 trust score combining all detection signals.”www.sec-ra.com · checked Aug 2, 2026 | “Returns a verdict ( clean / minor issues / suspicious ) plus any prior report another agent already logged against that same source.”tellumen.vercel.app · checked Aug 2, 2026 |
| Runtime governance· | “Layered Scan Policies Apply stricter thresholds for destructive operations (delete, send) vs. safe operations (read).”www.sec-ra.com · checked Aug 2, 2026 | “Spend guardrails are an advisory ledger, not wallet-level enforcement”tellumen.vercel.app · checked Aug 2, 2026 |
| Permission scopes· | “Permission Context Role-based tool validation. Enforce read-only roles, allowlisted operations, and per-user permission boundaries on tool calls.”www.sec-ra.com · checked Aug 2, 2026 | no public information tellumen.vercel.app · checked Aug 2, 2026 |
| Compliance certifications· | “Compliance Reporting Audit-ready compliance reports with threat breakdowns, block rates, and status for your security team.”www.sec-ra.com · checked Aug 2, 2026 | no public information tellumen.vercel.app · checked Aug 2, 2026 |
| Regulatory alignment· | “OWASP Agentic Top 10 Explained: Every Risk, Real Attacks, and Fixes”www.sec-ra.com · checked Aug 2, 2026 | no public information tellumen.vercel.app · checked Aug 2, 2026 |
Safety
| Field | Secra | Tellumen Agent |
|---|---|---|
| Safety evaluations· | “OWASP Agentic Top 10 Explained: Every Risk, Real Attacks, and Fixes”www.sec-ra.com · checked Aug 2, 2026 | no public information tellumen.vercel.app · checked Aug 2, 2026 |
| Red teaming· | “Introducing Secra Simulate: Free Adversarial Testing for AI Agents”www.sec-ra.com · checked Aug 2, 2026 | no public information tellumen.vercel.app · checked Aug 2, 2026 |
| Model or system card· | no public information www.sec-ra.com · checked Aug 2, 2026 | |
| Third-party evaluations· | “OWASP Agentic Top 10 Explained: Every Risk, Real Attacks, and Fixes”www.sec-ra.com · checked Aug 2, 2026 | no public information tellumen.vercel.app · checked Aug 2, 2026 |
| Data handling· | “API Keys Generate sk_secra_ scoped keys shown once, bcrypt-hashed at rest.”www.sec-ra.com · checked Aug 2, 2026 | “Records a source-tagged, timestamped observation about an entity. Never overwrites — prior observations are kept so contradictions stay visible instead of silently lost.”tellumen.vercel.app · checked Aug 2, 2026 |
Practicality
| Field | Secra | Tellumen Agent |
|---|---|---|
| Pricing model· | “Priced like infrastructure, not like an API.”www.sec-ra.com · checked Aug 2, 2026 | “pay-per-call REST routes ( /paid/* ) via x402”tellumen.vercel.app · checked Aug 2, 2026 |
| Price point· | no public information www.sec-ra.com · checked Aug 2, 2026 | “verify-agent-card and check-content-safety at $0.10/call, and get-dispute-evidence at $1.00/call”tellumen.vercel.app · checked Aug 2, 2026 |
| Availability· | no public information www.sec-ra.com · checked Aug 2, 2026 | |
| Deployment options· | “Drop them into any HTTP client and you're protected.”www.sec-ra.com · checked Aug 2, 2026 | “https://tellumen-a2a-agent.onrender.com”tellumen.vercel.app · checked Aug 2, 2026 |
| Integrations· | “Works with OpenAI, Anthropic, LangChain, LlamaIndex, raw HTTP, and the three frameworks your team will invent next quarter.”www.sec-ra.com · checked Aug 2, 2026 |
Foundation models
| Field | Secra | Tellumen Agent |
|---|---|---|
| Base models· | no public information tellumen.vercel.app · checked Aug 2, 2026 | |
| Model provider· | no public information tellumen.vercel.app · checked Aug 2, 2026 | |
| Context window· | no public information tellumen.vercel.app · checked Aug 2, 2026 |
Ecosystem
| Field | Secra | Tellumen Agent |
|---|---|---|
| Protocols supported· | ||
| Tool use· | “Tool Validation Validate LLM-generated tool calls before execution.”www.sec-ra.com · checked Aug 2, 2026 | “17 skills are callable over the free A2A JSON-RPC endpoint”tellumen.vercel.app · checked Aug 2, 2026 |
| Multi-agent· | no public information www.sec-ra.com · checked Aug 2, 2026 | “another agent's orchestrator would read to decide whether to trust or invoke it”tellumen.vercel.app · checked Aug 2, 2026 |
| API access· | “DEVELOPER+ API Keys Generate sk_secra_ scoped keys”www.sec-ra.com · checked Aug 2, 2026 | |
| Open source· | no public information www.sec-ra.com · checked Aug 2, 2026 |
Impact
| Field | Secra | Tellumen Agent |
|---|---|---|
| User base· | no public information tellumen.vercel.app · checked Aug 2, 2026 | |
| Deployment scale· | ||
| Target sectors· | no public information www.sec-ra.com · checked Aug 2, 2026 | |
| High-risk domains· | no public information www.sec-ra.com · checked Aug 2, 2026 | “payment spend — plus small-business data tooling other agents can call directly.”tellumen.vercel.app · checked Aug 2, 2026 |
| Documented incidents· | “One Prompt, 4,000 Machines: The OpenClaw Attack Chain Explained”www.sec-ra.com · checked Aug 2, 2026 | “Motivated directly by the July 2026 incident where an OpenAI cyber-testing agent escaped its sandbox and hacked an unrelated real company (Hugging Face)”tellumen.vercel.app · checked Aug 2, 2026 |
Disclosed by neither
Both Secra and Tellumen Agent publish nothing on these 26 fields. That is a finding about the category rather than a difference between them, so it is recorded here instead of as 26 identical table rows. Each is shown with its source check on the individual profiles.
- Autonomy level
- Human oversight
- Goal complexity
- Action space
- Operating environment
- Initiative
- Supported regions
- Support model
- Model swappable
- Open weights
- Fine-tuning
- Marketplace presence
- Safety policy
- Usage restrictions
- Incident reporting
- Insurance available
- Insurance carriers
- Coverage limits
- Indemnification
- Liability cap
- Tamper-evident log
- Outcome-based pricing
- Settlement mechanism
- Dispute process
- SLA terms
- Evaluation coverage