Scorecard/Vaultree

Vaultree

Data gathering in process

Data-in-use encryption platform using fully functional data encryption (FFDE) enabling computation on encrypted data without decryption.

HQIE
Est2020
Size11-50
EU AI ActLimited Risk
vaultree.com
Score
38.1 / 100
Evidence
3 items

Developing safety practices - core foundations in place with room for improvement.

Strengths:Technical Safety
Weaknesses:Governance Maturity, Risk Assessment, Regulatory Readiness, External Engagement
Focus Areas
encryptiondata privacyconfidential computingdata security

Security Assessment

Security-relevant indicators for vendor evaluation

Security Posture
43
TS-01dim: 50
Red Teaming & Pre-deployment Testing
Adversarial testing before deployment
TS-05dim: 50
Robustness & Adversarial Resilience
Resistance to adversarial attacks
RA-01dim: 35
Sector-Specific Risk Assessment
Risk analysis for deployment context
RA-03dim: 35
Dual-Use & Misuse Risk
Dangerous capability awareness
RA-07dim: 35
Incident History & Track Record
Past incidents and response quality
EE-04dim: 22
Vulnerability Disclosure Program
Bug bounty or CVE reporting process
Incident History
Vaultree incident records sourced from AIAAIC Repository and public reporting.
Integration: AIAAIC, OECD AI Incidents Monitor
Third-Party Audits
External audit reports, SOC 2 attestations, and ISO certifications verified where published.
Sources: Company filings, registry lookups
CVE & Disclosures
Known vulnerabilities and security advisories from NVD, GitHub Security Advisories, and vendor pages.
Sources: NVD, GHSA, vendor disclosure pages

Dimension Breakdown

GM
Governance Maturitymedium
Published policies, corporate structure, safety mandate, whistleblowing, executive commitment.
32
TS
Technical Safetymedium
Benchmarks, adversarial robustness, fine-tuning safety, watermarking, model cards, research output.
50
1 evidence items
TS-04
RA
Risk Assessmentlow
Dangerous capability evaluations, thresholds, external testing, bug bounty, halt conditions.
35
1 evidence items
RA-01
RR
Regulatory Readinesslow
ISO 42001, EU AI Act compliance, GPAI obligations, international commitments, incident reporting.
42
1 evidence items
RR-05
EE
External Engagementmedium
Survey participation, research support, transparency, behavior specs, open-source contributions.
22

Social Impact & Safety Profile

Emerging

Vaultree specialises in encryption and data privacy solutions. While data privacy is a social good, their work is AI-adjacent rather than AI-specific. No social impact framework for AI has been documented.

encryptiondata privacy

Need a detailed report for Vaultree?

Subscribe to express interest in indicator-level evidence, peer benchmarking, and regulatory gap analysis - or reach out to request a full company overview brief.