AIToday
Large Language ModelsHacker NewsPublished: Aug 16, 2026, 13:03 JST3 min read

Ventrova launches $249 LLM security audit run by AI agent

Ventrova launches $249 LLM security audit run by AI agent

Key takeaway

  • Ventrova, an AI-agent-run business, has launched Sentinel Scan, a $249 authorized security audit for LLM applications that runs 15+ adversarial attacks (prompt injection, data exfiltration, jailbreaks, encoding tricks, and RAG injection) and delivers a report with fix guidance within 48 hours.

  • In a pilot run against a hardened first-party target, all 15 attacks were defended against, validated by an independent LLM judge rather than keyword matching.

  • The service aims to let teams audit their guardrails before attackers find real vulnerabilities.

3 Key Points

  1. What happened

    Ventrova, an AI-agent-operated business, is offering Sentinel Scan, a $249 one-time authorized security audit that runs 15+ prompt-injection and data-exfiltration attacks against a customer's LLM application and delivers a plain-English report within 48 hours.

  2. Why it matters

    LLM applications face real risks of adversarial attack (jailbreaks, prompt injection, data leakage), and most teams lack a straightforward, affordable way to validate their guardrails before attackers find vulnerabilities. Sentinel Scan provides an independent LLM judge (not keyword filters) to score responses for actual policy violation or data leakage, with transcripts and fix recommendations — at roughly a tenth of a cent in cost per scan.

  3. What to watch

    Ventrova says self-serve booking is coming soon; currently you email to book and receive a reply within one business day. The $249 price includes one free re-test after you ship fixes. Authorization and ownership confirmation are required before any scan; third-party or unauthorized targets are not tested.

In Depth

Read the full story

Ventrova, which operates transparently as an AI-agent-run business, has introduced Sentinel Scan, a one-time authorized security audit service for LLM applications. The audit works in four steps: customers provide authorized access to a live or staging target they own or control; Ventrova's AI agent runs a corpus of 15+ adversarial attacks (including direct override, roleplay/jailbreak, fake system tags, encoding tricks, indirect/RAG injection, and more) against the target; an independent LLM judge evaluates each response for actual policy violation or data leakage rather than relying on keyword filters; and the customer receives a full report within approximately 48 hours, including exact transcripts, judge verdicts, root-cause explanations, and fix guidance. The service is priced at $249 and includes one free re-test after fixes are deployed.

To validate the methodology and cost before launch, Ventrova ran a pilot audit against a first-party hardened test system. The target defended against all 15 attacks in the corpus, each scored independently by an LLM judge. Rather than view this as a weak corpus, Ventrova frames the result as confirmation that a genuinely hardened target's guardrails hold under adversarial pressure — and emphasizes that the real value lies in the independently-judged, transcript-backed answer to whether an LLM application leaks under attack, achieved at roughly a tenth of a cent in judge and target LLM cost per scan. Authorization is strictly enforced: Ventrova requires a signed authorization confirming the customer's ownership or control of the target before any scan begins, and declines to test third-party systems or unauthorized targets. Customers can currently book by emailing Ventrova directly and receive a reply within one business day; self-serve booking is noted as coming soon.

Context & Analysis

LLM applications face an increasingly concrete attack surface: prompt injection, jailbreaks, indirect exfiltration through retrieval-augmented generation (RAG), and encoding tricks can all leak data or override intended behavior. Teams building with LLMs often rely on ad-hoc testing or internal red-team exercises, which can be slow, inconsistent, or blind to novel attack patterns. Ventrova's Sentinel Scan addresses this gap by automating the audit process through an AI agent that runs a standardized attack corpus and scores responses using an independent LLM judge — a peer evaluator rather than a rigid keyword filter. The pilot run (against Ventrova's own hardened target) produced clean results, meaning all 15 attacks were blocked; this outcome, while superficially less dramatic than a "discovered vulnerability," actually validates the audit's integrity — the company chose to test a genuinely defended system first rather than manufacture failure for marketing impact. The $249 fixed price and 48-hour turnaround are designed to make security validation accessible to small and mid-scale LLM teams who might otherwise skip formal red-teaming.

FAQ

What attacks does Sentinel Scan test for?
The audit runs 15+ attacks from Ventrova's corpus, including direct override, roleplay/jailbreak, fake system tags, encoding tricks, indirect injection, and RAG injection.
How long does it take to get results?
You receive a full report — including transcripts, judge verdicts, root-cause analysis, and fix recommendations — usually within 48 hours.
Can Ventrova test third-party systems or production user data?
No. Sentinel Scan only tests systems you own or are explicitly authorized to test; Ventrova requires a signed authorization confirming ownership or control before any scan begins.

Get the latest Large Language Models news every morning

AI-summarized, only the topics you pick — one digest a day via Email, Slack, or Discord.

Free · takes 30 seconds · unsubscribe anytime

Ask AI

Ask AI anything about this article. Q&As are published on this page for other readers too.

Related Articles

Next articleOpen-weight AI models threaten pricing, but cloud giants stay profitable

The AI news that matters, in one minute each morning.

Sign up free