Trust Readiness Assessment

How ready are you to operate or consume external AI agents?

A short questionnaire. Your answers stay in your browser unless you submit them with a design-partner application.

This assessment reflects self-reported answers only. Aivessa does not perform automated external scanning of your systems in this iteration.

Operator identity

  • Can you name the organization operating each production agent?
  • Do you have named responsible humans for every production agent?

Organization verification

  • Have you verified the operator's organization details (registration, domain)?

Endpoint control

  • Is endpoint control cryptographically or technically verified?

Capabilities

  • Does every agent declare a capability manifest?

Authentication

  • Do agent-to-agent and agent-to-tool calls use verifiable authentication?

Data access

  • Is data access scoped to declared purposes and categories?

Tool permissions

  • Are tool permissions least-privilege and reviewable?

Human oversight

  • Do sensitive actions route through a documented human approval step?

Revocation

  • Can you revoke a specific agent quickly (minutes, not days)?

Incident response

  • Do you have a documented incident-response contact for each agent?

Delegation

  • Do you know when your agent delegates to another agent?

Auditability

  • Are agent actions logged in a way an auditor could review?

Readiness summary

0 of 13 answered. Fill in the remaining items to see a complete summary.

Overall
0%0.0 / 13

Self-reported readiness. Not a certification.

High-risk gaps
No high-risk gaps flagged.
Operator identity0.0 / 2
Organization verification0.0 / 1
Endpoint control0.0 / 1
Capabilities0.0 / 1
Authentication0.0 / 1
Data access0.0 / 1
Tool permissions0.0 / 1
Human oversight0.0 / 1
Revocation0.0 / 1
Incident response0.0 / 1
Delegation0.0 / 1
Auditability0.0 / 1