AI Chatbot Security Scanner

Is your AI chatbot easy to jailbreak?

Run OWASP-aligned prompt-injection and jailbreak checks against your chatbot.

OWASP-alignedPass/Fail scorecardAutomated OWASP-aligned scan
Security scorecardscan · support-bot
A−
Mostly resilient

1 medium issue found · 5 checks run

LLM01 Prompt injectionPASS
LLM02 Insecure outputPASS
LLM06 Sensitive info leakREVIEW
LLM07 System prompt leakagePASS
LLM08 Excessive agencyPASS
How it works

Three steps to a security scorecard.

01

Point it at your bot

Give the scanner your chatbot endpoint or widget. Only scan bots you own or are authorized to test.

02

We run OWASP LLM checks

Automated prompt-injection, jailbreak and data-leak probes aligned to the OWASP Top-10 for LLM apps.

03

Get scorecard + fixes

A Pass/Fail report with evidence per finding and plain-language remediation guidance you can act on.

What we check

The risks most chatbots miss.

Checks aligned with the OWASP Top-10 for LLM Applications — the failure modes attackers actually use.

LLM01

Prompt injection

Can a crafted message override your instructions or hijack the bot's behavior?

LLM06

Sensitive info disclosure

Will it reveal secrets, keys, or other users' data when coaxed?

LLM07

System prompt leakage

Can an attacker extract your hidden system prompt and business logic?

LLM08

Excessive agency

Does the bot take actions or call tools it shouldn't be allowed to?

JAILBREAK

Guardrail bypass

Common jailbreak patterns that trick the model past its safety rules.

OUTPUT

Insecure output handling

Unsafe content the bot returns that could break the page consuming it.

Plans

Choose a plan, then request your scan.

Every scan starts with a short authorization request — we verify you own or are allowed to test the target before any payment or scan runs.

Normal

$47 one-time · per scan

A full one-off scan with a shareable report.

  • 5 OWASP LLM checks
  • Pass/Fail scorecard
  • Priority scan processing
  • Branded PDF audit report
  • Evidence per finding + remediation
Request Normal scan
Most popular

Advanced

$197 one-time

Full coverage with a deeper scan and audit report.

  • Everything in Normal
  • Full OWASP LLM Top-10 coverage
  • Deeper probes per category
  • PDF reports emailed automatically
Request Advanced scan

Enterprise

$497 one-time · per chatbot

Authorized deep scan with human review.

  • Everything in Advanced
  • Authorization + identity verification
  • Automated risk triage (score + flags)
  • Human review before scan runs
  • Full report + 1 free re-scan after fixes
  • Secure token-gated report page
Request Enterprise scan
Questions

Straight answers.

Do I need to be technical to run a scan?

No. You point the scanner at your chatbot, it runs the checks, and you get a plain-language Pass/Fail report with fixes. No security background needed.

What is OWASP LLM Top-10?

It's the industry-standard list of the most critical security risks for applications built on large language models — the same failure modes real attackers target.

Why do I have to request a scan first?

Scanning a system you don't own is illegal. Every request is reviewed to confirm you own or are authorized to test the target before any payment link is issued or scan runs — it protects you and us.

What happens after I submit the request?

You'll get an email confirming we received it. After review (usually within one business day) we email you either a secure payment link to proceed, or the reason it wasn't approved — no charge either way until approved.

Can I scan any chatbot?

Only chatbots you own or are explicitly authorized to test. The request form captures that authorization, and Enterprise adds identity verification before anything runs.

What do I actually get?

A branded PDF scorecard with a grade, each check's Pass/Fail status, evidence for every finding, and remediation guidance you can hand to a developer.

The process

Authorization first. Then scan.

A short review step keeps this legal and safe — no payment until your request is approved.

1

Request

Pick a plan and submit the scan request form with your target and authorization.

2

Review

We verify ownership/authorization — manually or automatically — usually within one business day.

3

Approved → pay

You get an email with a secure payment link for your chosen tier to start the scan.

4

Not approved

If we can't verify authorization, you get an email with the reason — and no charge.

Request a scan

Tell us what to scan.

Submitting this request doesn’t charge you. We review every request to confirm you’re authorized to test the target, then email you a payment link (if approved) or the reason it wasn’t.

No charge until approved
Reviewed within 1 business day
Your details stay private
Where you actually live and work — cross-checked against your network location during review.
Your connectionDetecting…
Target hostingEnter the target URL above
Platform terms often require you to notify them before a security test runs on infrastructure they host.
AI Sec Tester runs non-intrusive, read-only checks against your chatbot’s conversational interface only — no exploitation, no infrastructure access, no availability/DoS testing. Because the target and its infrastructure remain under your control, The Souls of AI is not liable for any pre-existing issue, malfunction, downtime or component failure observed during an approved scan. See the full clause in our Terms.
Find out before an attacker does

Scan your chatbot today.

Get a security scorecard and fixes — starting at $47 per scan.

Request a scan

Checks aligned with OWASP Top-10 for LLM Applications. Only scan chatbots you own or are authorized to test.

Chat with us

Live chat is coming soon

👋 Our AI assistant is on its way. In the meantime, leave a message and we’ll get back to you by email.

AI Sec Tester is for defensive chatbot assessments on systems you own or are explicitly authorized to test. Singapore- and Malaysia-hosted/scoped targets are restricted for penetration-testing services unless handled through the required licensed provider path. Other public-sector, critical-infrastructure, sanctioned, or regulated targets require manual legal review before any paid security work.

AI Sec Tester — Scan your chatbot for prompt-injection flaws