Promptfoo

AI security testing platform — automatically finds and fixes vulnerabilities in AI agents and RAG applications.

Verified API available Free tier
Quick facts
What is it AI security testing platform — automatically finds and fixes vulnerabilities in AI agents and RAG applications.
Pricing Freemium
Free tier Yes
Platform Web Application
API Yes
Best for Securing AI agents and RAG applications before deployment, Integrating automated security testing into CI/CD pipelines
Domain registered 2023

Data updated Aug. 1, 2026

What does Promptfoo do?

Promptfoo is a security testing platform built specifically for AI applications. It helps developers and security teams automatically find and fix vulnerabilities in AI agents, RAG systems, and other LLM-powered workflows. The tool simulates real-world attacks to uncover issues like prompt injections, data leaks, jailbreaks, and insecure tool use, providing a way to test AI applications much like traditional software gets tested for security flaws.

It works by integrating directly into development workflows, connecting to CI/CD pipelines, version control systems, and agent frameworks. Promptfoo generates thousands of context-aware attacks tailored to a specific application's business logic and guardrails. What sets it apart is its focus on remediation; it doesn't just find problems but gives actionable fixes within developer tools like pull requests. The platform is built on threat intelligence from a large community of users, which helps it stay current with new attack vectors.

This tool is most valuable for teams building and deploying AI applications at scale, particularly in regulated industries. Enterprise developers use it to ship more secure agents, while security leaders use it to establish automated, scalable testing processes. Companies like OpenAI and Anthropic, along with 156 Fortune 500 firms, use Promptfoo to build confidence in their AI systems before they reach users.

#ai security#ci-cd#developer tools#llm evaluation#prompt testing#red teaming#vulnerability scanning

Key features

What makes it stand out
01
Automated red teaming that simulates real users to uncover application-specific vulnerabilities
02
Integrates into CI/CD pipelines and developer workflows for continuous testing
03
Provides actionable remediation guidance directly in pull requests
04
Generates context-aware attacks for over 50 vulnerability types
05
Leverages threat intelligence from a community of over 300,000 users

Who is Promptfoo for?

Who benefits most from this tool
Securing AI agents and RAG applications before deployment
Integrating automated security testing into CI/CD pipelines
Continuously monitoring production AI apps for new vulnerabilities

Pricing

Free tier available — start without a credit card

Community

Free
  • 10,000 red teaming probes per month
  • All LLM evaluation features
  • All model providers and integrations
  • Red teaming (10k probes/month)
  • Custom integration with your own app
  • Run locally or self-host on your own infrastructure
  • Vulnerability scanning
  • Community support

Enterprise

Custom

Everything in Community, plus:

  • All Community features
  • Custom red teaming limits
  • Team sharing & collaboration
  • Continuous monitoring
  • Centralized security/compliance dashboard
  • Customizable attack profiles and target settings
  • SSO and granular permission profiles
  • Promptfoo API access
  • Managed cloud deployment
  • Professional services support
  • Priority support & SLA guarantees

On-Premise

Custom

Everything in Enterprise, plus:

  • All Enterprise features
  • Deployment on your own infrastructure
  • Complete data isolation
  • Dedicated runner
  • Assigned deployment engineer

Trust & presence

Domain Domain registered 2023

Gallery

Click any image to enlarge

Alternatives in Testing

PromptPerf Verified Testing

Test your prompts across 100+ AI models to find the best performer for your specific task and budget.

Akto's Test Editor Verified Testing

AI agent security platform — discover, test, and enforce guardrails for MCPs and AI agents across your infrastructure.

ProtectAI Verified Testing

AI security platform that scans models for vulnerabilities, tests AI systems, and monitors runtime threats.

Mindgard Verified Testing

Automated AI security testing platform that red teams your models to find vulnerabilities before attackers do.

PromptLayer Verified Testing

Platform for prompt management, evaluations, and LLM observability — version, test, and monitor AI prompts.

make · n8n
Prompt Refine Verified Testing

Test and compare AI prompt variations with different models, track results, and export data for analysis.

Mibo Ai Verified Testing

AI agent testing platform — automated test generation, semantic evaluation, and production tracing for AI agents.

n8n
adversa.ai Verified Testing

AI security platform that identifies vulnerabilities in AI models, agents, and applications through red teaming and risk assessment.

Similar tools

Prompt Security Verified Developer Tools

Enterprise security platform that protects AI applications from prompt injection, data leaks, and other LLM-specific vulnerabilities.

PromptBros Verified Chat & Assistants

An AI Interaction Management System — organize, test, and share prompts and AI agents across multiple models.

Prompteus Verified Productivity Tools

AI orchestration platform for teams — design, automate, and manage workflows across multiple LLMs and business tools.

PromptOwl Verified No-Code&Low-Code

Enterprise platform for building, deploying, and managing production-ready AI agents with no-code tools and governance.

Share X LinkedIn Telegram
Promptfoo Visit