Back to catalog
AAT-29.3AATArtificial Intelligence & Autonomous Technologies
Tool & API Invocation Controls
Description
Mechanisms exist to authenticate, authorize, validate and monitor all tool and Application Programming Interface (API) invocations by AI agents, including; (1) Schema validation; (2) Rate limiting; (3) Access controls; and (4) Output validation.
SCF
Powered by the Secure Controls Framework
The control catalog, cross-mappings, and STRM relationship data shown here are provided by the Secure Controls Framework (SCF), 2026.2. Every mapping is credited to SCF as the methodology, with the SCF reference and version stored alongside it.
© SCF Council, LLC. Secure Controls Framework content is free and shown here with attribution. securecontrolsframework.com · About SCF on STIGViewer