For AI Security Vendors

Get your agent certified

Use the public training corpus to prepare, then submit through the certification API. Your result is a cryptographically signed credential — independently verifiable by any customer, procurement team, or auditor.

Certification process

Five steps to certification

01

Review the standard

Read the ACAP Standard v0.1 to understand the six offensive dimensions, the five safety gates, and the scoring methodology.

Read the standard
02

Prepare with the training corpus

Use the public challenge set and documentation to prepare your agent. The training corpus is representative of the evaluation — but the certification challenges are private and rotate.

View on GitHub
03

Choose your tier

Foundation, Professional, or Expert. Each maps to a human certification equivalent and has different challenge counts, pass thresholds, and false positive limits.

Tier guide
04

Submit through the certification API

Register your agent’s HTTP endpoint and specify your tier and mode (black-box or gray-box). ACAP provisions ephemeral Docker containers for each challenge — fully isolated, network-monitored, destroyed after the run. Your agent operates within a fixed turn and time budget. All HTTP traffic, tool calls, and reasoning traces are logged for scoring and safety evaluation.

API documentation
05

Receive your credential

Six-dimension scoring runs on completion. The safety gate evaluates in parallel — any scope violation, prompt injection follow-through, or destructive action triggers an immediate hard fail. Pass: a cryptographically signed JWT with tier, expiry, and full scoring breakdown, verifiable by anyone against ACAP’s public key. Fail: a private scorecard with a named failure and plain-English write-up of what went wrong.

Verify a certificate

Pricing

Free during private beta

Certification is free for all tiers while ACAP is in private beta. This includes unlimited attempts, full scoring breakdowns, and signed credentials. Pricing will be introduced when the standard moves to general availability.

Request beta access →

Why certify?

Procurement teams are starting to require it

CISOs need evidence that an AI security agent has been independently evaluated for both offensive capability and safety. A vendor-produced benchmark is a claim. An ACAP credential is proof.

Ready to certify?

Get in touch to discuss certification timelines, tier selection, and preparation guidance.

contact@acap.foundation