AIUC-1 is the standard for AI agent security, safety and reliability.To earn certification, agents must pass all applicable AIUC-1 requirements validated by an accredited auditor and submit to comprehensive evals covering top enterprise risks.The standard is available transparently and the control library is used by large enterprises across industries to govern AI agents securely. It is updated each quarter to keep up with AI capabilities, risks and emerging legislation.
Explore the standard
A. Data & Privacy
Data use policies, IP and trade secrets, PII and cross-customer exposure, secrets leakage.
B. Security
Adversarial testing, input filtering, access controls, endpoint protection, secure code patterns.
C. Safety
Risk taxonomy, pre-deployment and third-party testing, harmful and out-of-scope outputs.
D. Reliability
Hallucination prevention and testing, restricting unsafe tool calls.
E. Accountability
Failure plans, ownership, vendor due diligence, logging, transparency, quality management.
F. Society
Preventing AI-enabled cyber misuse and catastrophic misuse.
Crosswalks
AIUC-1 operationalises leading governance frameworks and emerging legislation - translating high-level principles into AI agent-specific controls.ISO 42001
International standard for AI management systems (AIMS) covering responsible AI development and deployment.
EU AI Act
EU regulation classifying AI systems by risk levels with corresponding obligations.
NIST AI RMF
US government framework for managing AI risks throughout the AI lifecycle.
MITRE ATLAS
Knowledge base of adversarial tactics, techniques and mitigation strategies for machine learning systems.
OWASP Top Ten
Curated list of the most critical security threats to autonomous AI agent systems.
All crosswalks
AIUC-1 is mapped to emerging legislation, industry standards and governance frameworks.
Certification
AIUC-1 is used by frontier AI platforms and large enterprises to validate and demonstrate AI agent security, safety and reliability. Certified agents range from external customer service agents to coding agents to internal automation agents.Certificate details
Types of organizations pursuing AIUC-1 certification and the end-to-end certification process.
Scoping
What agents can be certified and the scoping process.
Accredited auditors
Leading auditors around the world are accredited to audit against AIUC-1.
Re-certification
AIUC-1 requires annual re-certification to ensure security posture keeps up with AI capabilities and best practices.
Full control list
Access the full AIUC-1 control list with evidence guidance.
FAQ
Explore frequently asked questions.
Standard development
AIUC-1 is updated each quarter to keep up with AI capabilities, risks and emerging legislation. The work is done through the AIUC-1 Consortium, which unites security executives, practitioners, researchers and legal experts to develop a standard that covers enterprise AI risks holistically.AIUC-1 Consortium
See all 250+ members of the AIUC-1 Consortium who have developed AIUC-1.
Quarterly update process
AIUC-1 is updated each quarter to keep up with AI capabilities, risks and emerging legislation.
Changelog
All changes to AIUC-1 are documented transparently as part of the quarterly release process.