WitnessAI - Unified AI Security and Governance Platform
WitnessAI · Cybersecurity & IT
Certification per AWS Marketplace.
Evidence tier Source Confirmed · 4 captures on record
What the publisher says
As described on AWS Marketplace.
WitnessAI is an enterprise AI security platform that observes, controls, and protects AI interactions across employees, models, applications, and agents through a unified policy engine and centralized audit trail.
Intent-based classification replaces keyword-based DLP by analyzing context and tracking AI interactions over time. Intelligent AI routing directs queries based on risk, cost, or purpose. Human-to-agent attribution traces every autonomous action back to its origin.
Show the rest of the publisher’s description (4 more lines)
The platform delivers runtime security for models, applications, and agents through bidirectional protection designed to detect and block prompt injection, jailbreak attempts, and model manipulation. Real-time tokenization protects PII, credentials, and financial data before they are processed by AI systems. Content filtering validates outputs before delivery or downstream agent execution.
WitnessAI is built on an enterprise-grade architecture with single-tenant isolation that keeps data under customer control. Multi-region deployment supports data residency and sovereignty requirements. Immutable audit trails support compliance reporting for frameworks including EU AI Act, ISO/IEC 42001, NIST AI RMF, and PCI DSS 4.0.1. The platform is SOC 2 Type II certified.
Optional integrations with identity and endpoint systems are available to extend coverage.
WitnessAI is a standalone platform and does not require any third-party AI product, model, or service to operate.
Highlights
Highlighted by the publisher on AWS Marketplace.
Govern both workforces, humans and agents, with one policy engine. Intent-based classification understands context and tracks interactions over time, replacing legacy keyword-based DLP approaches. Human-to-agent attribution traces every autonomous action back to its origin, so accountability never breaks across the workflow.
Runtime security for models, applications, and agents. Real-time tokenization protects PII and credentials before they reach any AI system.
Agentic Security - Comprehensive visibility, governance, and runtime control for autonomous AI agents. - View complete agent server activity, tool calls, and actions performed by agents. - Agent server inventory classified by function. - Agent pre-execution and response protection. - Every agent action attributed to its human identity.
Agent build and provenance
See the full provenance
The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.
Compliance
- FedRAMPConfirmedNot listed90%, registry-checkedNo FedRAMP Marketplace entry matched this vendor's domain, checked 2026-08-27registry recordas observed 2026-08-27
Confirmed means matched to a public authoritative registry. Claimed means the vendor or its listing states it, not yet cross-checked. A framework not shown was not found in any source we hold, which is not evidence against it. Not listed means a scoped registry check found no match for this vendor's domain: a No is a scoped registry check, not a compliance judgment. Confidence bands: 95% domain-verified, 90% registry-checked, 80% self-attested, 70% weak signal. Self-attested items marked “vendor's site” are gathered from the vendor's own website and are not verified by us.
Plans and pricing as listed
4 listed- Units
- Units
- Units
- Units
Refund terms
As stated by the publisher on AWS Marketplace.
All fees are non-cancellable and non-refundable except as required by law.
Sources
Publisher resources
3 linksLinked repositories
Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.
Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.

