Two angles
Securing the AI systems you deploy. LLM application penetration testing — prompt injection (direct and via your documents), sensitive-data leakage, insecure output handling, excessive agency of tools, supply-chain and plugin risks — following the OWASP GenAI LLM Top 10 and, where systems take actions, the OWASP Gen AI Security Project’s agentic-security guidance. Architecture review of prompts, retrieval, memory, tool calling and logging. A usage policy for the AI tools your staff already use.
EU AI Act readiness. A practical, indicative read of where a given system may fall under the Act’s risk tiers, which obligations would apply, on what dates, and what evidence you would need. As of August 2026: the Article 50 transparency obligations (provider disclosure for direct human interaction, machine-readable marking of synthetic output, deployer disclosure of deepfakes and public-interest text with the editorial-control exception, and the emotion-recognition/biometric-categorisation duties) apply from 2 August 2026; after the AI Omnibus (in force 27 July 2026) the high-risk obligations apply from 2 December 2027 (Annex III) and 2 August 2028 (Annex I). Awareness and preparation, not legal advice and not a guaranteed classification — your counsel signs off, we make it concrete.
What we test, concretely
- Prompt injection: direct, indirect (documents, web pages, emails your system reads), and multi-step through agents
- Data leakage: system prompts, other users’ data, secrets in context or logs
- Insecure output handling: model output rendered as HTML, executed as code, or passed to tools without validation
- Excessive agency: what tools the model can call, with whose permissions, and what happens when it is tricked
- Guardrail evasion and jailbreaks against your specific configuration
- The surrounding web application and API, to the OWASP Web Security Testing Guide (WSTG v4.2)
What we deliberately do not claim
We do not certify AI systems as safe or compliant, we do not guarantee a legal risk classification under the AI Act, we do not benchmark model bias or robustness as a core service, and we do not sell an “AI security platform”. This is engineering and testing work, done by the same people who test your web applications.
Sources: OWASP Gen AI Security Project — OWASP GenAI LLM Top 10 (2026 edition, published August 2026) and the project’s agentic-security guidance; OWASP Web Security Testing Guide; European Commission — AI Omnibus (in force 27 July 2026) and Article 50 transparency guidelines. Last reviewed August 2026.