Trust Readiness Assessment
How ready are you to operate or consume external AI agents?
A short questionnaire. Your answers stay in your browser unless you submit them with a design-partner application.
This assessment reflects self-reported answers only. Aivessa does not perform automated external scanning of your systems in this iteration.
Operator identity
- Can you name the organization operating each production agent?
- Do you have named responsible humans for every production agent?
Organization verification
- Have you verified the operator's organization details (registration, domain)?
Endpoint control
- Is endpoint control cryptographically or technically verified?
Capabilities
- Does every agent declare a capability manifest?
Authentication
- Do agent-to-agent and agent-to-tool calls use verifiable authentication?
Data access
- Is data access scoped to declared purposes and categories?
Tool permissions
- Are tool permissions least-privilege and reviewable?
Human oversight
- Do sensitive actions route through a documented human approval step?
Revocation
- Can you revoke a specific agent quickly (minutes, not days)?
Incident response
- Do you have a documented incident-response contact for each agent?
Delegation
- Do you know when your agent delegates to another agent?
Auditability
- Are agent actions logged in a way an auditor could review?
Readiness summary
0 of 13 answered. Fill in the remaining items to see a complete summary.
Overall
0%0.0 / 13
Self-reported readiness. Not a certification.
High-risk gaps
No high-risk gaps flagged.
Operator identity0.0 / 2
Organization verification0.0 / 1
Endpoint control0.0 / 1
Capabilities0.0 / 1
Authentication0.0 / 1
Data access0.0 / 1
Tool permissions0.0 / 1
Human oversight0.0 / 1
Revocation0.0 / 1
Incident response0.0 / 1
Delegation0.0 / 1
Auditability0.0 / 1