Skip to main content
Grantex provides technical controls that can be mapped to widely used AI agent security and risk-management frameworks. This page documents current mapping posture and the corresponding Grantex feature areas without claiming formal third-party attestation unless separately stated.

OWASP Agentic Security Top 10

Published December 2025 — the first industry-standard threat taxonomy for autonomous AI agents.

EU AI Act

The Act applies in phases. Under Regulation (EU) 2024/1689 as amended by Regulation (EU) 2026/1744, Art. 50 transparency obligations apply from 2 August 2026, Annex III high-risk obligations from 2 December 2027, and product-embedded Annex I high-risk obligations from 2 August 2028. The controls below are technical mappings, not a determination that a deployment satisfies the regulation; see EU AI Act for provider and deployer duties and the limits of each mapping.

NIST AI Risk Management Framework

Active now as voluntary risk-management guidance; useful for US government and federal-contractor alignment where applicable.

Full Compliance Matrix

Compliance Evidence Pack

Grantex can generate a compliance evidence pack that bundles all relevant data for auditors:
The evidence pack includes:
  • Grant records issued in the selected period
  • Audit entries in the selected period, including hash-chain integrity results
  • Current policy records
  • Summary counts for agents, grants, audit outcomes, policies, and plan

Evidence And Standards Mappings

  • SOC 2 — readiness control mapping published; formal third-party attestation is not published. View mapping
  • IETF Internet-Draft — preparation track only; no IETF submission, working-group adoption, RFC approval, or standards status is claimed. Internal Commerce V1 C6T materials define the draft outline and review gates.
  • NIST AI RMF — mapping and whitepaper preparation track only; no NIST submission, public comment submission, NCCoE acceptance, or NIST approval is claimed. Internal Commerce V1 C6T materials define the candidate reference architecture and control-map outline.
  • OpenID AuthZEN — conformance mapping complete. View mapping

Ownership

Grantex is owned by Orchestrum Technologies LLP. Inventor and owner: Sanjeev Kumar. Ownership contact: sanjeev@orchestrum.in or mishra.sanjeev@gmail.com.
Last modified on September 30, 2026