Promptfoo
AI security testing platform — automatically finds and fixes vulnerabilities in AI agents and RAG applications.
| What is it | AI security testing platform — automatically finds and fixes vulnerabilities in AI agents and RAG applications. |
|---|---|
| Pricing | Freemium |
| Free tier | Yes |
| Platform | Web Application |
| API | Yes |
| Best for | Securing AI agents and RAG applications before deployment, Integrating automated security testing into CI/CD pipelines |
| Domain registered | 2023 |
Data updated Aug. 1, 2026
What does Promptfoo do?
Promptfoo is a security testing platform built specifically for AI applications. It helps developers and security teams automatically find and fix vulnerabilities in AI agents, RAG systems, and other LLM-powered workflows. The tool simulates real-world attacks to uncover issues like prompt injections, data leaks, jailbreaks, and insecure tool use, providing a way to test AI applications much like traditional software gets tested for security flaws.
It works by integrating directly into development workflows, connecting to CI/CD pipelines, version control systems, and agent frameworks. Promptfoo generates thousands of context-aware attacks tailored to a specific application's business logic and guardrails. What sets it apart is its focus on remediation; it doesn't just find problems but gives actionable fixes within developer tools like pull requests. The platform is built on threat intelligence from a large community of users, which helps it stay current with new attack vectors.
This tool is most valuable for teams building and deploying AI applications at scale, particularly in regulated industries. Enterprise developers use it to ship more secure agents, while security leaders use it to establish automated, scalable testing processes. Companies like OpenAI and Anthropic, along with 156 Fortune 500 firms, use Promptfoo to build confidence in their AI systems before they reach users.
Key features
What makes it stand outWho is Promptfoo for?
Who benefits most from this toolPricing
Free tier available — start without a credit cardCommunity
- 10,000 red teaming probes per month
- All LLM evaluation features
- All model providers and integrations
- Red teaming (10k probes/month)
- Custom integration with your own app
- Run locally or self-host on your own infrastructure
- Vulnerability scanning
- Community support
Enterprise
Everything in Community, plus:
- All Community features
- Custom red teaming limits
- Team sharing & collaboration
- Continuous monitoring
- Centralized security/compliance dashboard
- Customizable attack profiles and target settings
- SSO and granular permission profiles
- Promptfoo API access
- Managed cloud deployment
- Professional services support
- Priority support & SLA guarantees
On-Premise
Everything in Enterprise, plus:
- All Enterprise features
- Deployment on your own infrastructure
- Complete data isolation
- Dedicated runner
- Assigned deployment engineer
Trust & presence
Gallery
Click any image to enlargeAlternatives in Testing
Test your prompts across 100+ AI models to find the best performer for your specific task and budget.
AI agent security platform — discover, test, and enforce guardrails for MCPs and AI agents across your infrastructure.
AI security platform that scans models for vulnerabilities, tests AI systems, and monitors runtime threats.
Automated AI security testing platform that red teams your models to find vulnerabilities before attackers do.
Platform for prompt management, evaluations, and LLM observability — version, test, and monitor AI prompts.
Test and compare AI prompt variations with different models, track results, and export data for analysis.
AI agent testing platform — automated test generation, semantic evaluation, and production tracing for AI agents.
AI security platform that identifies vulnerabilities in AI models, agents, and applications through red teaming and risk assessment.
Similar tools
Enterprise security platform that protects AI applications from prompt injection, data leaks, and other LLM-specific vulnerabilities.
An AI Interaction Management System — organize, test, and share prompts and AI agents across multiple models.
AI orchestration platform for teams — design, automate, and manage workflows across multiple LLMs and business tools.
Enterprise platform for building, deploying, and managing production-ready AI agents with no-code tools and governance.