Continuous AI Agent Assurance

Discover every AI agent. Prove it is governed.

Ostelun connects agent inventory, identity, cloud, code, governance and security evidence into a current, explainable Authorization-to-Operate decision — then re-verifies only the proof affected when an agent changes.

DiscoveryEvidenceAuthorizationChange impactContinuous assurance
Enterprise assurance graphContinuously evaluated
AI agents connected to identities, tools, data, monitoring, controls and evidence through OstelunIdentityEntraCloudAI assetsToolsActionsDataAccessEvidenceFreshnessControlsPolicyOstelunASSURED
DiscoverUnderstandAuthorizeProve
Why now

The agentic enterprise is arriving.

AI agents are moving from experiments into enterprise workflows. As agents gain identities, tools, data access and decision authority, governance has to become as dynamic as the systems being governed.

33%
of enterprise software applications are predicted to incorporate agentic AI by 2028, up from less than 1% in 2024.
Gartner
15%
of day-to-day work decisions are predicted to be made autonomously through agentic AI by 2028.
Gartner
Widescale adoption of AI agents depends on trust, and trust requires transparency and control.
OWASP GenAI Security Project · Agent Control Standard
Read the standard
Standards-informed assurance

Operationalize the standards security teams already trust.

Ostelun is being built around a reusable requirement, control and evidence model so one technical proof can support multiple assurance contexts. Framework mapping is context — evidence and verification create assurance.

OstelunReusable assurance model
OWASP AgenticAgent security risks
NIST AI RMFRisk outcomes
ISO/IEC 42001AI management
OWASP ACSAgent control
OAAvailable pack

OWASP Agentic Top 10 2026

Ostelun's first framework pack maps original assessment questions and controls to the ten OWASP agentic risk categories.

Source
NRPlanned mapping

NIST AI RMF + GenAI Profile

Connect technical assurance evidence to broader AI risk-management outcomes and governance decisions.

Source
42External standard

ISO/IEC 42001

A recognized AI management-system standard for establishing and continually improving organizational AI governance.

Source
ACArchitecture signal

OWASP Agent Control Standard

A new open standard emphasizing inspectable, traceable and controllable agents across enterprise environments.

Source
Prove once, map many. OWASP's September 2026 industry crosswalk now maps 51 GenAI vulnerabilities to controls across 25 frameworks — further evidence that reusable mappings and shared technical proof will matter as AI assurance programs mature. View OWASP crosswalk
Product experience

Assurance should be a live operating state — not a static questionnaire.

Ostelun preserves a defensible security case as the agent changes: what is approved, what evidence supports it, what drifted, what remains valid and exactly what has to be re-verified.

Ostelun · Agent assurance workspace
Illustrative workflow
Example agent

Enterprise Research Agent

Production · High risk · Identity and evidence continuously evaluated

Review required
94%Required proof
81%Machine-backed
1Changed dependency
0Critical findings
Approved baselineIdentity · Ownership · Logging · PrivilegeAll required evidence current
Material change detectedNew enterprise permission observedPrivilege-baseline proof invalidated · unaffected evidence preserved
Selective re-verification1 assertion requires new proofIdentity ownership, monitoring and data-source evidence remain valid.
Evidence deliverable

See the proof, not just the score.

Review the human-readable assurance report beside the provenance-rich package that makes every conclusion traceable back to its supporting evidence.

Integrity verified
PDF previewEnterprise-Research-Agent-Assurance.pdf
1 / 8
OstelunAI Agent Assurance Report
REVIEW REQUIRED
Enterprise Research Agent · Production
Authorization-to-Operate Assurance

Current evidence supports 94% of required proof. A newly observed enterprise permission invalidated one privilege assertion while identity ownership, monitoring and logging proof remain current.

94%Proof coverage
81%Machine-backed
1Re-verify
Material changeEnterprise permission requires renewed privilege proofDependent assertion invalidated · unaffected evidence preserved
Generated by OstelunEvidence-backed · SHA-256 manifested
Traceable packageassurance-package.zip
ZIP
assurance-package/verified
report/
assurance-report.pdf8 pages
manifests/
{}evidence-manifest.json18 records
hash-manifest.csvSHA-256
verification/
verification-results.json17 passed
evidence/
{}entra-service-principal.jsoncurrent
{}monitoring-baseline.jsoncurrent
!privilege-baseline.jsonre-verify
Package SHA-2568b7f0c4a…5d21e9
Provenance preserved
Assurance control plane

Use the telemetry enterprises already have. Turn it into reusable proof.

Ostelun is not trying to become another IAM, SIEM, CNAPP, DLP or runtime gateway. Those systems know important facts. Ostelun's job is to correlate those facts into an explainable security case for each agent.

Enterprise evidence
Identity & accessMicrosoft Entra · Graph
Cloud AIAzure · resource inventory
Agent inventoryPower Platform · control plane
Code & telemetrySource control · security signals
Ostelun
Continuous Assurance Graph
AssetAssetTypeControlRequirementEvidenceAssessmentFindingExceptionRelationship

Normalize discovery, ownership, privilege, evidence freshness, verification state and relationships into a reusable model instead of hard-coding each framework or integration into a separate workflow.

Assurance outcomes
Authorization decisionApproved · review · blocked
Selective re-verificationInvalidate only dependent proof
Assurance PassportPortable, provenance-rich record
Connector availability varies by evidence source and design-partner scope. The integration architecture is intentionally read-oriented and additive: Ostelun consumes trusted facts from enterprise systems rather than replacing them.
Continuous assurance lifecycle

Security assurance that changes when the agent changes.

A material change should invalidate the security proof that depends on it — not force the enterprise to restart an entire review from scratch.

01

Discover

Find candidate agents across enterprise control planes or register known agents directly.

02

Understand

Bind ownership, identity, privileges, tools, data sources, environment and material state.

03

Prove

Collect fresh evidence from identity, cloud, code, governance and security systems.

04

Authorize

Evaluate whether the defined policy and available evidence support operation right now.

05

Re-verify

When material state changes, invalidate only dependent proof and preserve what still holds.

06

Share

Package current authorization, provenance, findings and exceptions into portable assurance output.

The Ostelun thesis

AI governance should not be a questionnaire you complete once a year.

Every consequential AI agent should have a current, explainable, evidence-backed authorization to operate — and that authorization should change when the underlying security evidence changes.

Enter Ostelun →