Engagements

Three ways to work together.

Start free with the open-source harness. Bring me in for a fixed-scope audit when your agent is about to touch money, customer data, or production systems. Keep me on retainer when it never stops changing.

agentic-redteam

Open-source red-team harness you can run against your own agent — jailbreaks, injection, PII exfiltration. Publishing shortly.

FreeApache 2.0

Self-serve — clone and run


  • Target-agnostic HTTP runner
  • Jailbreak signature suite
  • Output harmful-compliance detection
  • PII & code-safety assertions
View on GitHub
Most teams start here

Scoped Security Review

A timeboxed diagnostic evaluating up to 3 core agentic tool workflows, OWASP Agentic Top 10 threat map, and 1 PR-ready patch.

$7,500 – $12,500timeboxed scope

1 week · Intake scoping session before contract finalization


  • Security review of up to 3 core agentic tool workflows
  • OWASP Agentic Top 10 threat & vulnerability map
  • Reproducible payload logs & exploit curl scripts
  • 1 PR-ready remediation code patch
  • 60-minute executive CISO debrief
Start a scoping conversation

Guardrail & Red-Team Retainer

Continuous assurance for teams shipping agent changes every week. Usually starts after an audit.

$4,500/ month

Rolling — 30 days' notice, no lock-in


  • Red-team sweeps on every release
  • Guardrail & eval maintenance as threats evolve
  • Regression telemetry so safety can't drift
  • Direct access for architecture review
Talk about a retainer