How long does an audit take?
Basic audits typically take 48-72 hours, while comprehensive audits take 72-96 hours from the time we receive access to your application. Monthly retainers provide ongoing testing on your schedule.
What information do you need to get started?
We'll need access to your AI application (API keys, test environment, or demo account), a description of your use case, and any specific areas of concern. All information is handled under NDA.
Do you test in production or a test environment?
We prefer testing in a dedicated test/staging environment to avoid any impact on production users. However, we can work with production systems using read-only or limited-scope testing if needed.
What happens if you find critical vulnerabilities?
Critical findings are reported immediately via secure channels. We work with you to understand the impact and can provide emergency remediation guidance to help you patch quickly.
Can I get a retest after fixing issues?
Yes! Retesting is included in the Comprehensive package and Monthly Retainer. Basic audit clients can purchase retesting separately or upgrade to a higher tier.
Do you provide compliance reports?
Our reports include OWASP LLM Top 10 mappings which can support compliance efforts. We can customize report formatting for specific compliance frameworks upon request.