Lasso AI Security Platform is a hybrid platform for discovering, assessing, testing, and protecting AI systems. It inventories AI applications, agents, tools, MCP servers, and connected resources, and maps relationships among agents, databases, and APIs to highlight misconfigurations and policy gaps. Automated red teaming tests applications in static, dynamic, and high-agency modes. At runtime, the gateway inspects prompts, responses, tool calls, MCP communications, and sub-agent traffic; it can block, mask, or alert on policy violations in under 50 milliseconds. Its Shadow AI capability monitors more than 8,000 AI tools. Lasso supports agents built with Vertex AI, Microsoft Copilot, AWS Bedrock, Salesforce Agentforce, and custom platforms. It maps activity and audit trails to frameworks including NIST AI RMF, OWASP, EU AI Act, ISO 42001, SOC 2 Type 2, GDPR, and HIPAA. Deployment options include a browser extension, proxy integrations, and data integrations. Lasso is designed for enterprises and serves global enterprises and the U.S. federal government. Pricing is available on request.
Who it is for
Lasso is designed for enterprises that need AI discovery, risk management, red teaming, and runtime protection. Its coverage includes organizations using AI agents, tools, and MCP connections.
What is good
- Inventories AI applications, agents, tools, and MCP servers
- Automated testing across three attack modes
- Gateway enforcement under 50 milliseconds
- Monitors more than 8,000 AI tools
- Offers an open-source MCP Gateway
What to know first
- Pricing is available on request
- Enterprise-focused platform
- Hybrid deployment model
Verdict
Lasso connects AI discovery, risk assessment, testing, and runtime controls in one platform. Enterprises should review its deployment options and request pricing to assess fit.
Compared on LLM security tools
- Prompt injection defense
- Yes
- PII redaction
- Yes
- Secrets detection
- Yes
- Output guardrails
- Yes
- Model-abuse detection
- Yes
- Deployment model
- hybrid


