Honorable Mentions
The AIGP market has many vendors. Of these, 13 were found relevant to our clients and were selected for evaluation in this Magic Quadrant. However, the exclusion of a provider does not mean that the vendor lacks viability. The following are noteworthy vendors not included in the formal analysis. These six vendors could be appropriate for clients, contingent on their requirements.
The vendors are displayed alphabetically.
Enzai
Enzai provides a purpose-built AIGP designed to help enterprises manage AI use across the life cycle. The platform maintains a centralized record of AI use cases, systems, models, agents and vendors.
The platform supports configurable workflows for intake, review, approval and ongoing oversight. Enzai places strong emphasis on regulations (e.g., EU AI Act), frameworks (e.g., NIST AI RMF) and standards (e.g., ISO/IEC 42001). Its roadmap highlights expanded support for agentic AI governance and greater automation in policy enforcement and risk scoring.
LatticeFlow AI
LatticeFlow AI is an emerging vendor in AI governance. It offers a platform designed to transition organizations from superficial check-the-box AI risk management to evidence-based AI governance. By utilizing Swiss engineering and scientific research, the company offers deep technical evaluations and continuous monitoring for autonomous, agentic AI systems.
Its platform capabilities include AI asset discovery, ensuring compliance with international standards and regulations like NIST RMF, ISO42001 and the EU AI Act, and performing automated security testing. Real-world applications of its technology span across critical infrastructure, global finance, frontier AI labs and defense operations to ensure system reliability and performance. Through strategic partnerships and a public registry of AI frameworks (AI Atlas), the platform maps AI risks to technical controls and interprets complex technical evidence into actionable insights for secure innovation.
Modulos
Modulos AG offers the Modulos Risk-centric AI Governance Platform. This end-to-end platform automates regulatory gap assessments, risk monitoring and remediation tracking for AI systems. The platform provides a unified Governance Graph that connects risks, controls, evidence, requirements and frameworks. AI agents automate routine GRC tasks such as evidence collection and control assessments.
A differentiating feature is quantifying AI risk in monetary terms. It supports regulations (e.g., EU AI Act), frameworks (e.g., NIST AI RMF) and standards (e.g., ISO/IEC 42001). Real-time compliance posture is maintained through automated monitoring and integration with existing tech stacks via open APIs, which also surface shadow AI by reconciling discovered usage against the governed inventory.The platform also features structured review workflows and generates audit-ready reports.
.
Singulr
Singulr delivers a full life cycle AI governance control plane that combines continuous AI discovery, contextual risk scoring, automated onboarding, runtime guardrails and audit‑ready reporting. It spans employee AI use, custom models, third‑party tools, embedded AI and agentic systems.
The platform takes an integration‑first approach, working with existing security, IT, cloud, MCP, and SaaS agentic platform controls rather than forcing proxy‑based deployments. The platform also provides governance for endpoint AI agents like Claude, Cursor and ChatGPT via native OS sensors and browser extensions. Its broad coverage of emerging agentic platforms appeals to large organizations looking for an independent governance layer on top of existing security and IT stacks.
Trustible
Trustible offers the Trustible Responsible AI Governance Platform, an AI-powered SaaS solution designed to orchestrate enterprise AI programs for legal, risk, compliance and technology teams. The platform centralizes AI use cases, agents, models, datasets and vendors into a unified inventory for visibility and risk prioritization, supported by customizable workflows for reviewing proposals, assigning risk levels and tracking approvals.
Trustible provides governance blueprints, policy templates, risk taxonomies and audit preparation tools that align with regulations (e.g., EU AI Act), frameworks (e.g., NIST AI RMF) and standards (e.g., ISO/IEC 42001). It does not natively provide centralized runtime enforcement, opting instead to orchestrate via API and MCP controls.
WitnessAI
WitnessAI offers the WitnessAI Unified AI Security and Governance Platform, a unified AI security and governance solution securing employees, models, applications and agents. It classifies AI activity by intent, not keywords, and sees every AI surface, including 4,500+ apps, thick clients, IDEs, agents and API traffic.
Governance spans three layers: Observe (discover all AI, shadow AI, agentic plugins, MCP servers), Control (inline block, reroute, redact, workflow actions based on identity, intention, model and app, and agent approved-tool enforcement) and Protect (bidirectional runtime AI defense blocking prompt injection and filtering harmful output across 100+ models). It integrates through the option that best fits each AI surface and works with a wide variety of security, identity management and cloud platforms to enforce controls where necessary.