Howdy IH,
I’m building PromptBrake (https://promptbrake.com), an AI API security testing product for teams at any stage, from founders and security leaders to engineers shipping production systems.
Waitlist: https://promptbrake.com/waitlist
What it does today:
- Tests AI API endpoints with a fixed library of real attack patterns.
- Covers prompt injection, indirect injection, data leakage, tool misuse, and safety bypass behavior
- Returns pass/warn/fail results with evidence and remediation context
How teams use it:
- Pre-release: catch issues before launch
- Post-release: re-test after model, prompt, tool, or config changes
Current scope (MVP):
- Endpoint-focused security testing
- Manual runs (no CI/CD automation yet)
- No scheduled scans/alerts yet
Why I built it:
I kept seeing teams ship AI features fast, but security checks were inconsistent, hard to repeat, or too heavy for day-to-day engineering workflows.
Would value blunt feedback:
- Which failure modes are most painful in your environment?
- What’s the minimum needed for this to fit your release/security process?
- What would block you from trying it first?
Thanks.
Quick follow-up:
The MVP is fully functional and now live, ready for teams to secure and stress-test their AI endpoints.
We’re continuing to improve the product based on user feedback while hardening and maintaining the platform. During this phase, you may occasionally experience intermittent service.
Quick follow-up:
We’re getting closer to full MVP release, and we’ve been implementing updates based on feedback from different users. One recent addition is CI integration for Pro paid accounts: users can generate CI API keys in the dashboard and run scan/gating endpoints from their own pipelines.
We’re still in waitlist mode while we keep hardening and validating the workflow end-to-end.