Layer 2 · Output Evaluation

Output Evaluation Tools — Capability Coverage Map

Layer 1 stops bad input; Layer 2 catches bad output before it reaches the user — hallucinations, leaked data, off-brand or toxic answers. Unlike the input layer, no single vendor covers this cleanly. Select vendors to see combined coverage — green where covered once, amber where duplicated, red where you have a gap.

Capability Venn — combined coverage of selected vendors

Nothing selected — showing how many vendors cover each capability. Click vendors below to build a stack.

Covered (once) Duplicate coverage Partial only Gap — not covered

Select vendors to compare

Coverage verdict

Full capability matrix — vendors plotted against every capability

How vendors were selected — methodology

Inclusion. A vendor appears here if it meets at least one of three gates: (A) Dominant — named a market leader or material enterprise presence in independent, non-vendor coverage; (B) OWASP-listed — appears in the OWASP GenAI Security Project AI Security Solutions Landscape (Q2 2026); (C) New innovator — launched or materially funded within roughly the last twelve months. At least one open-source option is retained per capability cluster, and acquired vendors are named by acquirer.

Read this before relying on "OWASP-listed." The OWASP Solutions Landscape is a self-submitted directory. Vendors nominate themselves through a submission form, and entries are grouped by sponsorship tier. Appearing in it means submitted and accepted — not independently assessed, benchmarked, or ranked by market share. Treat it as evidence of participation in the community, not of product quality.

Deliberate exclusion. AI gateways (Kong, Cloudflare, Portkey, LiteLLM) are left out by design: a gateway is where policy is enforced, not the engine that decides. That is a judgment call, not an oversight.

Scoring. Placement reflects publicly documented or vendor-claimed capability as of July 2026 — not independent testing. A mark means a capability is claimed to exist, not that it is strong or sufficient for your requirements. Validate finalists against your own traffic before contracting.

Maintenance. Reviewed quarterly against the OWASP landscape and current vendor documentation. Last review: July 2026.