SOC 2 Type II
SOC 2 examines whether access to systems is authorized, logged, and bounded. Custom AI agents create a new gap: they can act on behalf of users without traditional access controls applying to them. VisIQ closes that gap at the runtime layer.
- CC6, Logical Access: ALLOW enforces pre-authorized boundaries per custom agent identity before any action runs
- CC7, System Operations: RECORD produces verifiable enforcement artifacts for operations reviews and auditor sampling
- CC9, Risk Mitigation: ISOLATE prevents custom agents from reaching data or systems outside their defined scope