Reco

Data gathering in process

Dynamic SaaS security platform discovering and securing all SaaS applications, identities, and data interactions across the enterprise.

HQIL
Est2020
Size51-200
EU AI ActLimited Risk
reco.ai
Score
37.4 / 100
Evidence
3 items

Developing safety practices - core foundations in place with room for improvement.

Weaknesses:Governance Maturity, Technical Safety, Risk Assessment, Regulatory Readiness, External Engagement
Focus Areas
saas securityidentity securitydata securitythreat detection

Security Assessment

Security-relevant indicators for vendor evaluation

Security Posture
45
TS-01dim: 48
Red Teaming & Pre-deployment Testing
Adversarial testing before deployment
TS-05dim: 48
Robustness & Adversarial Resilience
Resistance to adversarial attacks
RA-01dim: 42
Sector-Specific Risk Assessment
Risk analysis for deployment context
RA-03dim: 42
Dual-Use & Misuse Risk
Dangerous capability awareness
RA-07dim: 42
Incident History & Track Record
Past incidents and response quality
EE-04dim: 20
Vulnerability Disclosure Program
Bug bounty or CVE reporting process
Incident History
Reco incident records sourced from AIAAIC Repository and public reporting.
Integration: AIAAIC, OECD AI Incidents Monitor
Third-Party Audits
External audit reports, SOC 2 attestations, and ISO certifications verified where published.
Sources: Company filings, registry lookups
CVE & Disclosures
Known vulnerabilities and security advisories from NVD, GitHub Security Advisories, and vendor pages.
Sources: NVD, GHSA, vendor disclosure pages

Dimension Breakdown

GM
Governance Maturitymedium
Published policies, corporate structure, safety mandate, whistleblowing, executive commitment.
32
TS
Technical Safetymedium
Benchmarks, adversarial robustness, fine-tuning safety, watermarking, model cards, research output.
48
1 evidence items
TS-04
RA
Risk Assessmentlow
Dangerous capability evaluations, thresholds, external testing, bug bounty, halt conditions.
42
1 evidence items
RA-01
RR
Regulatory Readinesslow
ISO 42001, EU AI Act compliance, GPAI obligations, international commitments, incident reporting.
35
1 evidence items
RR-05
EE
External Engagementmedium
Survey participation, research support, transparency, behavior specs, open-source contributions.
20

Social Impact & Safety Profile

Emerging

Reco provides SaaS and identity security solutions. Their work is primarily AI-adjacent with no published social impact policies or assessments specific to AI systems.

saas securityidentity security

Need a detailed report for Reco?

Subscribe to express interest in indicator-level evidence, peer benchmarking, and regulatory gap analysis - or reach out to request a full company overview brief.