Skip to main content
AIUC-1 is the standard for AI agent security, safety and reliability.To earn certification, agents must pass all applicable AIUC-1 requirements validated by an accredited auditor and submit to comprehensive evals covering top enterprise risks.The standard is available transparently and the control library is used by large enterprises across industries to govern AI agents securely. It is updated each quarter to keep up with AI capabilities, risks and emerging legislation.

Explore the standard

A. Data & Privacy

Data use policies, IP and trade secrets, PII and cross-customer exposure, secrets leakage.

B. Security

Adversarial testing, input filtering, access controls, endpoint protection, secure code patterns.

C. Safety

Risk taxonomy, pre-deployment and third-party testing, harmful and out-of-scope outputs.

D. Reliability

Hallucination prevention and testing, restricting unsafe tool calls.

E. Accountability

Failure plans, ownership, vendor due diligence, logging, transparency, quality management.

F. Society

Preventing AI-enabled cyber misuse and catastrophic misuse.

Crosswalks

AIUC-1 operationalises leading governance frameworks and emerging legislation - translating high-level principles into AI agent-specific controls.

ISO 42001

International standard for AI management systems (AIMS) covering responsible AI development and deployment.

EU AI Act

EU regulation classifying AI systems by risk levels with corresponding obligations.

NIST AI RMF

US government framework for managing AI risks throughout the AI lifecycle.

MITRE ATLAS

Knowledge base of adversarial tactics, techniques and mitigation strategies for machine learning systems.

OWASP Top Ten

Curated list of the most critical security threats to autonomous AI agent systems.

All crosswalks

AIUC-1 is mapped to emerging legislation, industry standards and governance frameworks.

Certification

AIUC-1 is used by frontier AI platforms and large enterprises to validate and demonstrate AI agent security, safety and reliability. Certified agents range from external customer service agents to coding agents to internal automation agents.

Certificate details

Types of organizations pursuing AIUC-1 certification and the end-to-end certification process.

Scoping

What agents can be certified and the scoping process.

Accredited auditors

Leading auditors around the world are accredited to audit against AIUC-1.

Re-certification

AIUC-1 requires annual re-certification to ensure security posture keeps up with AI capabilities and best practices.

Full control list

Access the full AIUC-1 control list with evidence guidance.

FAQ

Explore frequently asked questions.

Standard development

AIUC-1 is updated each quarter to keep up with AI capabilities, risks and emerging legislation. The work is done through the AIUC-1 Consortium, which unites security executives, practitioners, researchers and legal experts to develop a standard that covers enterprise AI risks holistically.

AIUC-1 Consortium

See all 250+ members of the AIUC-1 Consortium who have developed AIUC-1.

Quarterly update process

AIUC-1 is updated each quarter to keep up with AI capabilities, risks and emerging legislation.

Changelog

All changes to AIUC-1 are documented transparently as part of the quarterly release process.
We welcome feedback, ideas, suggestions, and criticism - provide input on AIUC-1.