ZeroLeaks
Continuous AI red teaming for agents, endpoints and MCP tools, with unlimited scans on every plan
Visit ZeroLeaks
zeroleaks.aiAbout ZeroLeaks
ZeroLeaks runs continuous red-team scans against AI agents, endpoints and MCP tools, looking for prompt injection, data leakage and unsafe actions — then re-tests to verify each fix actually closed the hole. You point it at a system prompt, a live agent endpoint or a set of tool definitions, and a team of specialised attack agents plans, executes and validates attacks in minutes. The probe library is the differentiator: it is grounded in thousands of documented real-world prompt leaks and jailbreaks catalogued by the team behind a 100k-plus-star repository, rather than a synthetic checklist that gets stale the week after it ships. Coverage spans prompts, tool calls, MCP servers, RAG pipelines and extended multi-turn conversations, which is where a lot of injection actually lands. The CI/CD path is what makes it a testing tool rather than an audit: connect a repository and every pull request that changes agent behaviour gets scanned, with findings posted as checks and merge gates so risk cannot reach production silently. Every finding ships with reproducible evidence, a severity ranking and guided remediation, plus hardening validation to prove the vulnerability is closed rather than merely flagged. Reports export to PDF for security and compliance review. The pricing stance is unusual and deliberate: scans are unlimited on every plan, so testing more often never costs more — the meter is on seats and features, not diligence. Pro, Team and Business all check out self-serve with no demo wall.
Does ChatGPT recommend your AI tool?
If you're building in AI Security & Testing, run a free AI-visibility scan on your own product — we ask ChatGPT across 5 prompt angles and score how often you get named. ~30 seconds, no signup, no card.
Key Features
ZeroLeaks Pros & Cons
✅ Pros
- +Unlimited scans means security testing on every PR is free at the margin
- +Self-serve checkout up to $999/mo — no forced sales call
- +Fix verification, not just a list of findings
⚠️ Cons
- −$79/mo entry point is steep for a hobby project
- −Team tier forces a two-seat minimum
- −SSO and retention controls jump straight to $999/mo
Who Is ZeroLeaks Best For?
Tags
Is ZeroLeaks your tool?
This is the page buyers and AI assistants read when they look up ZeroLeaks. Claim your listing for $19 one-time — no subscription, nothing to cancel — and get a Featured badge, top placement in your category, and a permanent dofollow backlink. Prefer it ongoing? Monthly is one click away on the next page.
Complete Your Security Stack
Other security tools in our catalog:
1Password
Try FreeSecrets and credential manager
Keep API keys and .env secrets out of your repo
Gamma
Try FreeAI presentation builder
Turn ideas into polished decks instantly
AdCreative.ai
Try FreeAI-powered ad creatives
Generate marketing visuals in seconds
💰 Affiliate disclosure: We may earn a commission if you sign up through these links at no extra cost to you.
Stay updated on AI Security & Testing tools — join our weekly newsletter
One concise email with fresh launches, trending picks, and featured standouts.
Alternatives to ZeroLeaks
View all ZeroLeaks alternatives →DepScope
Free keyless MCP server that catches hallucinated, vulnerable, and typosquatted packages
CuratedMCP
Open-source endpoint scanner that finds and grades every MCP server across your AI clients
More AI Security & Testing tools
TestZeus
Autonomous Salesforce QA agent — plain-language tests, unlimited users, metered only on scenario runs
CertKit
SSL/TLS certificate lifecycle automation for Windows, JKS and appliances — discover, renew, deploy, monitor
KeyEnv
CLI-first, end-to-end encrypted secrets manager for dev teams, written in Rust
ADAGuard
WCAG 2.2 accessibility scanner that pre-fills VPAT/ACR reports and scans login-protected pages
Agentmetry
Local, open-source flight recorder that tags AI agent activity with MITRE ATT&CK
AI Reply Risk Checker
Review AI-drafted customer replies for promise, sensitive-data, and handoff risks before sending.
Agent connectivity: not yet verified