Every AIPI Global AI system is tested against the industry's leading security, privacy and application-security frameworks. Below are the twelve compliance and vulnerability reports our systems have been assessed against — and passed.
Each report below documents the vulnerabilities checked for under that standard, the methodology used, and the result. Full report documents are available on request.
Confirms AIPI Global's AI systems meet the technical and administrative safeguards required under the Health Insurance Portability and Accountability Act (HIPAA). Lists every vulnerability checked and its result — full detail is in the HIPAA Compliance Report document.
Confirms alignment with ISO/IEC 27001, the international standard for information security management systems. Outlines every vulnerability assessed against the standard's control set, with full detail in the ISO 27001 Compliance Report document.
Confirms AIPI systems meet the Defense Information Systems Agency's Security Technical Implementation Guides — the hardening benchmark used across U.S. government and defense environments. Full detail is in the DISA STIG Compliance Report document.
Confirms alignment with NIST Special Publication 800-53, the U.S. federal catalogue of security and privacy controls for information systems. Full vulnerability detail is in the NIST SP 800-53 document.
Confirms AIPI systems were tested against, and cleared, the 2013 edition of the OWASP Top Ten — the industry benchmark for critical web application security risks. Full detail is in the OWASP Top Ten 2013 Report document.
Confirms testing against the 2017 edition of the OWASP Top Ten, covering the critical web application security risks identified at that time. Full detail is in the OWASP Top Ten 2017 Report document.
Confirms testing against the current (2021) edition of the OWASP Top Ten, covering the latest critical web application security risks. Full detail is in the OWASP Top Ten 2021 Report document.
Confirms AIPI systems meet the OWASP Application Security Verification Standard (ASVS) 4.0, a detailed framework for verifying web application technical security controls. Full detail is in the ASVS 4.0 Compliance Report document.
Confirms AIPI's APIs were tested against the OWASP API Security Top Ten (2019), covering the most critical risks specific to API security. Full detail is in the OWASP API Top Ten 2019 Report document.
Confirms AIPI systems meet the Payment Card Industry Data Security Standard (PCI DSS), covering every vulnerability class relevant to environments that store, process or transmit payment card data. Full detail is in the PCI DSS Compliance Report document.
Confirms testing against the CWE/SANS Top 25 Most Dangerous Software Errors, a consensus list of the most severe and common software weaknesses. Full detail is in the SANS Top 25 Report document.
Confirms testing against the Web Application Security Consortium (WASC) Threat Classification, a structured taxonomy of web application security threats. Full detail is in the WASC Threat Classification Report document.
These reports exist so your IT, security and procurement teams can verify AIPI Global independently — not just take our word for it.
HIPAA, PCI DSS, NIST and DISA STIG coverage means AIPI Global fits into healthcare, payments, government and defense procurement processes without extra legwork.
OWASP Top Ten (2013–2021), ASVS 4.0 and the OWASP API Top Ten cover every generation of critical web and API vulnerability classes AIPI systems are tested against.
Every report lists the specific vulnerabilities checked under its standard, so your team can review methodology and results line by line — not just a pass/fail badge.
Send us the standard(s) you need and we'll share the full report — ideal for vendor security questionnaires, procurement reviews, and audits.
Reports are shared directly with verified business contacts and may require an NDA.