Three ways to work together.
Start free with the open-source harness. Bring me in for a fixed-scope audit when your agent is about to touch money, customer data, or production systems. Keep me on retainer when it never stops changing.
agentic-redteam
Open-source red-team harness you can run against your own agent — jailbreaks, injection, PII exfiltration. Publishing shortly.
FreeApache 2.0
Self-serve — clone and run
- Target-agnostic HTTP runner
- Jailbreak signature suite
- Output harmful-compliance detection
- PII & code-safety assertions
Most teams start here
Scoped Security Review
A timeboxed diagnostic evaluating up to 3 core agentic tool workflows, OWASP Agentic Top 10 threat map, and 1 PR-ready patch.
$7,500 – $12,500timeboxed scope
1 week · Intake scoping session before contract finalization
- Security review of up to 3 core agentic tool workflows
- OWASP Agentic Top 10 threat & vulnerability map
- Reproducible payload logs & exploit curl scripts
- 1 PR-ready remediation code patch
- 60-minute executive CISO debrief
Guardrail & Red-Team Retainer
Continuous assurance for teams shipping agent changes every week. Usually starts after an audit.
$4,500/ month
Rolling — 30 days' notice, no lock-in
- Red-team sweeps on every release
- Guardrail & eval maintenance as threats evolve
- Regression telemetry so safety can't drift
- Direct access for architecture review