
Promptfoo
AI security testing and red teaming for agents and RAG applications
What is Promptfoo?
Promptfoo is AI security testing software for teams building agents, RAG systems, and other AI applications. It simulates user behavior to surface application-specific vulnerabilities before and after deployment.
The platform focuses its testing on risks such as prompt injection, jailbreaks, data leaks, unsafe tool use, and harmful content. Teams can tailor attack flows to their applications rather than relying only on generic test scenarios.
Promptfoo can fit into developer workflows through CI/CD systems, source-control platforms, and agent or MCP frameworks. Its remediation workflow brings security findings and suggested next steps into pull requests and ongoing engineering work.
It is aimed at security and development teams that need repeatable AI application testing. The product can support both cloud and on-premise environments, depending on the deployment approach.
Promptfoo Features
Automated red teaming
Promptfoo simulates real users to look for vulnerabilities that are specific to an AI application. Its red-teaming coverage includes prompt injections, jailbreaks, data and PII leaks, unsafe tool use, and harmful content generation.
Workflow and platform connections
Promptfoo is designed to connect with AI applications, agents, and development workflows. The documented integration points include CI/CD pipelines, GitHub, GitLab, Jenkins, MCP and agent frameworks, with cloud or on-premise deployment options.
Remediation in engineering workflows
Promptfoo provides remediation guidance in pull requests and developer workflows after testing finds an issue. Teams can use those findings to track fixes and support continuous monitoring across applications.
Pricing
Pricing not verified
User reviews
No reviews yet. Be the first to review this tool.
Log in to write a review.