AI Pentest
Prompt injection, direct and through retrieved content, data leakage, tool misuse and excessive agency, MCP servers. Mapped to OWASP and MITRE ATLAS, with reproduction rates.
Partners / AI agencies
For agencies that build chatbots and AI agents for clients: an independent test of the agent and the app around it before handover, with findings in the agent you built reported to you first. Your client gets a report and a one-page letter they can check, and we never pitch your client.
01 Tested
On the build your client will get, before they see a date.
02 Found, reported to you
Findings in your agent come to you first, with evidence and the fix principle.
03 Fixed, retested
What your client reads: found and fixed before handover.
Agencies that build chatbots, RAG search or agents with real tools for their clients, especially when a client's procurement asks for an independent test, or when the agent will act on customer data.
The agent you built, and the systems it can reach on your client's side.
Prompt injection, direct and through retrieved content, data leakage, tool misuse and excessive agency, MCP servers. Mapped to OWASP and MITRE ATLAS, with reproduction rates.
The web app, the APIs the agent calls and the cloud underneath: authorization, tenant isolation and the paths from one weak spot to the rest.
Only as far as the test needs it: the authorization and the test window are agreed with them, because it is their system. Everything else goes through you. We do not pitch them, and the partner agreement includes a non-solicit.
No. Your client is buying an independent opinion, and a white-labelled report hides who gave it. The report names us as the tester, and the attestation letter lets your client show the result to their own customers or auditors without the findings.
A written authorization for every system they own, and their vendors' permission for anything those vendors host, such as a model provider or a hosted vector store. We provide the authorization letter template and handle the paperwork with you, before the test window opens.
Scope, findings with evidence, retest status and the attestation letter.
What Article 15 asks of high-risk AI, and when.
Independent, Dutch, and selling no product of our own.