Every tool is internal
The market is full of software you run on your own agents. None of it is an independent check of an agent someone else built.
An AI agent is a digital identity that can act. It receives employee-level permissions with no prior vetting. ProfCheck is the independent third party you hire to check it before it goes live, reviewed by an analyst, the same way we check people.
The market is full of software you run on your own agents. None of it is an independent check of an agent someone else built.
An agent credential the operator issues for itself is self-attestation. It is the opposite of an outside party verifying what the agent can actually do.
"Never sends email" is an instruction, not a permission. If the scope allows sending, one injected line of text defeats the promise.
The people onboarding a third-party AI agent and answerable for what it can reach.
Agents connected to email, CRM, finance or file systems, acting on live data.
A step before an agent is connected, and cyber-insurance renewals that want a risk assessment on file.
A DORA or third-party-risk audit, or a board asking whether due diligence was done before deployment.
Effective capability against the declared purpose. Every tool and scope classified on an eight-rung autonomy ladder, from read to authorize.
Chains from untrusted input, an inbound email or a fetched web page, to an action that sends, writes or transfers, with the mitigations that actually hold.
Who stands behind the agent: the maker, the model provider, the MCP servers and third-party tools, and who can change them after the check.
Identity, permissions, autonomy, supply chain, data exposure, behaviour and monitoring, scored into one risk profile.
Mapped to OWASP Agentic Top 10, NIST AI RMF and CSA Agentic IAM, the agent-world equivalent of sanctions and watchlists.
OAuth scopes, tools, MCP servers, the System Prompt and a short description of the use case.
And build a Permission Attack Graph of the chains that cross a trust boundary.
Seven risk domains against OWASP, NIST and CSA, with every finding tied to its basis.
A risk profile, permission-reduction recommendations and a one-page Agent Passport.
ProfCheck provides evidence and recommendations. The decision to connect the agent, and with what permissions, stays with you.
Describe your agent and its access, and we will scope the check.