← Back to Compliance Leaderboard
ESTIMATED SCORE — NOT VERIFIED
This assessment is based solely on publicly available documentation, marketing materials, and product announcements. Onyx Security has not submitted to AgentGoverning for independent adversarial verification. This score is an estimate only and may not reflect actual platform capabilities. Onyx Security is invited to submit for formal assessment at framework@agentgoverning.com. Estimated scores carry no certification status.
How This Score Is Calculated

This estimated score is calculated using a 0–3 scoring scale across 50 sample dimensions from the full AGS v2.2 standard:
0 = Structurally absent from platform architecture
1 = Partially evidenced in public documentation
2 = Fully evidenced in public documentation
3 = Verified by independent adversarial testing (requires submission)

Score = (sum of points awarded) ÷ (50 × 3) × 100

Based solely on publicly available documentation as of April 2026.

20 / 100 ESTIMATED

Onyx Security

20% estimated AGS compliance
Assessment: April 2026 · AGS v2.2 · Estimated (not independently verified)
16 Evidenced 18 Not Documented 16 Structurally Absent Estimated
Executive Summary
Onyx Security achieves a 20% estimated AGS v2.2 compliance score. As a security-focused platform, Onyx demonstrates notable strength in governance override resistance and deception detection capabilities, reflecting its adversarial defence orientation. The platform provides solid operational boundary enforcement and namespace isolation. However, Onyx's security-centric design leaves significant governance gaps in human control responsiveness, cross-jurisdiction compliance, model provenance tracking, and the full spectrum of emergence and infrastructure governance dimensions. The platform would benefit from broadening its governance capabilities beyond pure security into operational and compliance domains.
A: Mandate
24%
B: Integrity
24%
C: Identity
24%
D: Accountability
24%
E: Compliance
20%
F: Adversarial
16%
G: Boundary
4%
H: Alignment
16%
I: Emergence
0%
J: Infrastructure
0%
Key Strengths
AG-27
Governance Override Resistance
Strong resistance to governance policy bypass attempts. The platform's security architecture makes it difficult for agents to circumvent established governance controls.
Score: 2 / 3
AG-39
Deception Detection
Dedicated deception detection capabilities that identify misleading agent outputs, false claims, and manipulative reasoning patterns.
Score: 2 / 3
AG-03
Adversarial Coordination Detection
Security-oriented monitoring for adversarial coordination patterns, leveraging threat intelligence to identify coordinated agent manipulation attempts.
Score: 1 / 3
The following gap analysis is based on publicly available documentation only. These are estimated structural gaps, not verified findings. Onyx Security may have implemented controls not visible in public documentation.
Critical Gaps
AG-38
Human Control Responsiveness
Security-focused rather than control-focused. No mechanisms for real-time human override and graceful agent handoff in operational contexts are evidenced in public documentation.
Score: 0 / 3 — Structurally Absent
AG-47
Cross-Jurisdiction Compliance
No cross-jurisdiction compliance mapping. Tracking or enforcement of jurisdictional regulatory requirements across deployment regions is not evidenced in public documentation.
Score: 0 / 3 — Structurally Absent
AG-48
Model Provenance Tracking
No model provenance tracking. Establishing or verifying the origin, training lineage, or integrity of underlying models used by agents is not evidenced in public documentation.
Score: 0 / 3 — Structurally Absent
Recommendations
  1. Add governance configuration control (AG-07) for versioned policy management, enabling auditable governance policy change tracking.
  2. Implement resource consumption governance (AG-23) to monitor and limit agent resource usage patterns.
  3. Build human control responsiveness features (AG-38) enabling real-time human override, pause, and handoff capabilities.
  4. Develop cross-jurisdiction compliance mapping (AG-47) to support multi-region regulatory requirements.
  5. Submit for independent AGS verification to replace estimated scores with certified compliance ratings.
Full Dimension Assessment
DimensionNameCategoryScore
A — Mandate & Action Governance (AG-01 – AG-05)
AG-01Operational Boundary EnforcementEvidenced1
AG-02Cross-Domain Activity GovernanceNot Documented0
AG-03Adversarial Coordination DetectionEvidenced1
AG-04Mandate Scope ControlEvidenced1
AG-05Action Authorisation VerificationEvidenced1
B — Integrity & Configuration Governance (AG-06 – AG-10)
AG-06Record Integrity VerificationEvidenced1
AG-07Governance Configuration ControlNot Documented0
AG-08Deployment Integrity VerificationEvidenced1
AG-09Delegated Authority GovernanceNot Documented0
AG-10Configuration Drift DetectionNot Documented0
C — Identity & Access Governance (AG-11 – AG-15)
AG-11Agent Identity VerificationNot Documented0
AG-12Credential Lifecycle ManagementEvidenced1
AG-13Privilege Escalation PreventionEvidenced1
AG-14Inter-Agent AuthenticationNot Documented0
AG-15Namespace IsolationEvidenced1
D — Accountability & Oversight (AG-16 – AG-20)
AG-16Decision Audit TrailEvidenced1
AG-17Multi-Party AuthorisationNot Documented0
AG-18Outcome AttributionEvidenced1
AG-19Human Oversight ArchitectureEvidenced1
AG-20Purpose-Bound OperationNot Documented0
E — Compliance & Agent Governance (AG-21 – AG-25)
AG-21Regulatory Compliance VerificationEvidenced1
AG-22Behavioural Consistency VerificationEvidenced1
AG-23Resource Consumption GovernanceNot Documented0
AG-24Output ValidationNot Documented0
AG-25Financial Transaction GovernanceStructurally Absent0
F — Adversarial Defence (AG-26 – AG-30)
AG-26Prompt Injection DefenceNot Documented0
AG-27Governance Override ResistanceEvidenced2
AG-28Collusion DetectionStructurally Absent0
AG-29Data Poisoning DefenceNot Documented0
AG-30Social Engineering ResistanceNot Documented0
G — Boundary & Scope Governance (AG-31 – AG-35)
AG-31Capability Boundary EnforcementNot Documented0
AG-32Scope Creep DetectionNot Documented0
AG-33Environmental Boundary ControlNot Documented0
AG-34Cross-System Propagation ControlStructurally Absent0
AG-35Autonomy Level GovernanceStructurally Absent0
H — Alignment & Reasoning Governance (AG-36 – AG-40)
AG-36Value Alignment VerificationNot Documented0
AG-37Reasoning TransparencyNot Documented0
AG-38Human Control ResponsivenessStructurally Absent0
AG-39Deception DetectionEvidenced2
AG-40Goal Stability VerificationStructurally Absent0
I — Emergence & Evolution Governance (AG-41 – AG-45)
AG-41Emergent Capability DetectionStructurally Absent0
AG-42Collective Intelligence GovernanceStructurally Absent0
AG-43Self-Modification PreventionStructurally Absent0
AG-44Long-Horizon Attack DetectionStructurally Absent0
AG-45Evolutionary Pressure MonitoringStructurally Absent0
J — Infrastructure & Operational Governance (AG-46 – AG-50)
AG-46Infrastructure Dependency MappingStructurally Absent0
AG-47Cross-Jurisdiction ComplianceStructurally Absent0
AG-48Model Provenance TrackingStructurally Absent0
AG-49Operational ContinuityStructurally Absent0
AG-50Physical Impact GovernanceStructurally Absent0

Sources

Sources: Onyx Security platform documentation (onyx.security/platform), Guardian Agent architecture documentation, launch announcement March 2026 (Business Wire). Documentation reviewed April 2026.
Methodology: Scores estimated from publicly available documentation only. No proprietary or non-public information was used. Platforms are invited to submit for independent verification to receive a verified score.