AGS Assurance Framework

Three tiers of governance assurance

Modelled on established accountancy assurance standards — from agreed-upon procedures through reasonable assurance.

Three assurance tiers

The AGS Assurance Framework defines three tiers of governance assurance, each modelled on an established accountancy assurance engagement type. Tiers are cumulative — each builds on the evidence requirements of the tier below.

AGS-AUP — Agreed-Upon Procedures

Adversarial testing of specific dimensions

Adversarial testing of specific dimensions at a point in time. What the current benchmark produces. An independent assessment of selected governance dimensions using adversarial techniques, with results published on the leaderboard.

Accountancy parallel: like an agreed-upon procedures engagement — test specific things, report findings.
AGS-LA — Limited Assurance

Design review across all dimensions

Design review across all dimensions. No material exceptions noted. Requires documented controls and protocol file coverage across all 796 AGS v2.2 dimensions.

Accountancy parallel: like a limited assurance engagement — review controls design, express negative assurance (“nothing came to our attention”).
AGS-RA — Reasonable Assurance

Full operating effectiveness testing

Full operating effectiveness testing across all dimensions over a defined period. Requires test suite evidence, design documentation, and adversarial verification. The highest tier of AGS governance assurance.

Accountancy parallel: like a reasonable assurance engagement — test operating effectiveness, express positive assurance (“in our opinion, controls are effective”).

What each tier requires

Each tier builds cumulatively on the requirements of the tier below.

Tier Evidence Required
AGS-AUP Adversarial benchmark results · Specific dimensions tested at a point in time
AGS-LA All of AGS-AUP + Documented controls for all 841 dimensions + Protocol file coverage across every dimension
AGS-RA All of AGS-LA + Test suite evidence (unit tests mapped to dimensions) + Continuous monitoring + Period of operation (minimum 90 days)

How Agent Shield achieves AGS-RA

Agent Shield is the first platform to achieve AGS-RA (Reasonable Assurance) across all dimensions of the AGS v2.2 standard.

796/796
Dimension protocol coverage
5,422
Unit tests mapped to dimensions
99.9%
Adversarial benchmark score
Mar 2026
Continuous production operation since
SHA-256
Cryptographic audit trail

Submit for assurance assessment

Each tier has a distinct submission process. All submissions begin through the verification page.

AGS-AUP Submission

Submit your platform for LLM Audit or Agent Audit. Adversarial testing is conducted against specific dimensions. Results are published on the leaderboard.

AGS-LA Submission

Submit documented controls and protocol files covering all 841 dimensions. AgentGoverning reviews design coverage and issues negative assurance if no material exceptions are found.

AGS-RA Submission

Submit all AGS-LA evidence plus test suite evidence mapped to dimensions, continuous monitoring configuration, and evidence of a minimum 90-day operating period. Full operating effectiveness testing is conducted.

Begin Submission Process →

Ready to verify your governance?

Begin the assurance assessment process for your platform.

Submit for Verification → View Leaderboard →