Back to the registry
Agent passport

Willow - Enterprise Identity & Access Management for AI Agents

Willow · Cybersecurity & IT

No attestation published

Certification per AWS Marketplace.

Provenance reach4 of 12 layers traced

Evidence tier Source Confirmed · 4 captures on record

User ratingNot rated0 reviews on the listing
Runs onUnknownSaaS
ProvenanceUnknown44% of the provenance layers this product can disclose
Evidence riskHighSign in to see the basis for this band.

What the publisher says

As described on AWS Marketplace.

Willow is the identity and access management platform for enterprise AI agents - the control layer that lets organizations adopt AI safely and at scale. As companies deploy AI agents, copilots, and automation across teams, they accumulate agents, prompts, tools, MCP servers, and internal APIs faster than they can govern them. Willow closes that gap by treating every AI agent as a first-class identity with scoped permissions, group memberships, policies, and full audit trails - the same model enterprise IT already uses for human users, applied to autonomous AI systems.

The platform provides a managed enterprise implementation of Anthropic's Model Context Protocol (MCP), with 80+ built-in connectors including Slack, Gmail, Google Workspace, Jira, Confluence, GitHub, Salesforce, HubSpot, Snowflake, PostgreSQL, Datadog, Kubernetes, and more. Admins configure integrations, toolkits, skills, and plugins centrally and assign them to users or groups by role. End users consume tools through any MCP host - Claude, Cursor, Windsurf, internal copilots - restricted to exactly what they're authorized to access. SCIM 2.0 provisioning, SSO with Okta, Azure AD, Google, and Keycloak, and GitHub-based configuration-as-code round out the enterprise integration surface.

Show the rest of the publisher’s description (1 more line)

Willow includes shadow AI detection to surface unauthorized agents and MCP servers running inside the organization, background agents with their own identities and audit trails, and comprehensive audit logging that forwards to Splunk, Loki, or webhooks. All secrets are encrypted at rest with AES-256-GCM envelope encryption backed by AWS KMS. The platform is SOC 2 Type II compliant and deployed today across mid-to-large enterprises in financial services, e-commerce, and SaaS. Available as managed SaaS, dedicated AWS environment, or on-premises Kubernetes via Helm.

Highlights

Highlighted by the publisher on AWS Marketplace.

Identity & access management for AI agents. Treat every AI agent - Claude, Cursor, Windsurf, internal copilots, background automations - as a first-class identity with scoped permissions, group-based tool access, and full audit trails. The enterprise IAM model, applied to autonomous AI.

Managed enterprise MCP infrastructure. Connect AI agents to 80+ built-in integrations (Slack, Gmail, Jira, GitHub, Salesforce, Snowflake, Kubernetes, and more) or proxy any external MCP server through a single governed control plane with OAuth 2.1, SCIM 2.0, and SSO support.

Enterprise-grade security and governance. AES-256-GCM envelope encryption backed by AWS KMS, SOC 2 Type II compliance, shadow AI detection, and audit log forwarding to Splunk, Loki, or webhooks. Available as managed SaaS, dedicated cloud, or on-premises Kubernetes.

Agent build and provenance

See the full provenance

The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.

Compliance

Government
  • FedRAMPConfirmedNot listed90%, registry-checkedNo FedRAMP Marketplace entry matched this vendor's domain, checked 2026-08-27registry recordas observed 2026-08-27

Confirmed means matched to a public authoritative registry. Claimed means the vendor or its listing states it, not yet cross-checked. A framework not shown was not found in any source we hold, which is not evidence against it. Not listed means a scoped registry check found no match for this vendor's domain: a No is a scoped registry check, not a compliance judgment. Confidence bands: 95% domain-verified, 90% registry-checked, 80% self-attested, 70% weak signal. Self-attested items marked “vendor's site” are gathered from the vendor's own website and are not verified by us.

Vendor

External enrichment

CompanyWillowAutomated

Plans and pricing as listed

1 listed
Subscription
  • Units
$200,000.00
P12M

Refund terms

As stated by the publisher on AWS Marketplace.

30-day money-back guarantee. Not happy for any reason? Full refund, no questions asked.

Sources

Marketplace listingaws.amazon.comSource
App certificationaws.amazon.comSource
StandardEulaStandardEulaSource

Linked repositories

RepositoriesUnknownUnknown

Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.

Pricing
Paid
1 plan listed
Delivery
SaaS
Email: support+aws-mp@webrix.ai Documentation: https://docs.withwillow.ai
Open the source listing ↗

Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.