Commercial portal
Buy, bundle, or scope AI security work through MADE.
One catalog for scoped AI security reviews, Code Scanner, AI Security Program Scorecards, Sales Enablement, Academy training, Hiring Workshops, Workbench tooling, partner/OEM packages, and private offers.
Start with the decision or blockage you need to resolve.
The right first offer depends on whether the immediate need is launch risk, buyer evidence, agent authority, assessment readiness, workforce capability, or a partner integration.
Buyer Offer Map
The marketplace organizes products, services, licensing, and partner offers by the buyer problem they solve.
Ecosystem map of buyer problems and corresponding products, services, licensing, and partner offers.
- Discover AI security exposure
- Test and validate risk
- Prioritize and prove controls
- Scale capability through partners
Each path begins with a bounded outcome rather than an open-ended consulting engagement. Deeper assessments, remediation, retainers, or licensed products follow only when the first scope establishes a real need.
Start here
Start with one of the six buyer paths.
AI Launch Security Review
Focused 5–10 business day review for AI features, copilots, RAG systems, agents, and workflows approaching launch or enterprise review.
Request scopeCode Scanner
AI-native SAST for code, prompts, RAG, agents, MCP, and tool-calling systems.
ExploreAI Security Program Scorecard
Baseline 14 AI product security domains and generate a control roadmap.
ExploreAI Security Sales Enablement
Buyer-ready answers, evidence packs, and review support for enterprise deals.
Request scopeAI Security Academy
Role-based courses, workshops, labs, and LMS-ready team training.
ExploreAI Hiring Workshop
Calibrate AI security roles, requisitions, interviews, and onboarding before posting.
Request scopeFollow-on offers
After the six buyer paths, choose the depth you need.
AI Product Security Assessment
Deeper 2–4 week expert review for broader AI product assurance, architecture review, and follow-on work after launch triage.
Request scopeAI Red Teaming
Structured adversarial testing for prompt injection, jailbreaks, tool misuse, retrieval abuse, and unsafe workflows.
Request scopeAgentic Workflow Hardening
Map tool permissions, approvals, logs, rollback paths, and least-privilege controls for agentic workflows.
Request scopeAI Guardrails & Evals Review
Validate guardrails, eval criteria, blocked behaviors, regression coverage, and release criteria against real failure conditions.
Request scopeAdversarial Range
Replayable scenario pack for prompt injection, RAG abuse, jailbreaks, tool misuse, multimodal, and agentic attack surfaces.
ExploreScanner OEM Feasibility Sprint
A bounded OEM pilot for vendors that already own vulnerability management, DAST, API, infrastructure, AppSec, or remediation workflows.
Request scopeOffensive Platform Attack Path Analysis Pilot
Keep your attack engine. Add gray-box context, evidence-qualified attack paths, independent validation, and remediation chokepoints.
Start pilotWorkforce Platform Pilot
Add AI Security Engineering role architecture, readiness assessments, practical labs, and learner and cohort intelligence to an existing training platform or cyber range.
Start pilotEvidence Packs
Buyer-ready evidence packs, trust-center language, and review artifacts for launch, audit, and customer reviews.
ExploreTemplates & Tooling
Policies, playbooks, checklists, control starters, and workbench tooling to speed execution.
ExplorePrivate Offers
Enterprise, OEM, annual, or custom deals scoped through direct offer routing.
Request scopeIntegrations & Connectors
Connect Jira, Confluence, GitHub, Slack, Teams, Salesforce, ServiceNow, and more.
ExploreShop by problem
Start from the problem you’re trying to solve
AI Code Risk
AI-generated code is outrunning review and control coverage.
Shadow AI
AI tools, extensions, and workflows are spreading without visibility or ownership.
AI SDLC Missing
Normal SDLC does not cover prompts, RAG, agents, evals, or release gates.
Deal Blocked
A buyer or security reviewer wants proof the AI system is safe and bounded.
Sales Needs Proof
Customer-facing teams need crisp AI security language and evidence.
Agent Blast Radius
Tool-using agents can take actions you have not bounded.
AI Bugs
Prompt injection, retrieval abuse, and artifact paths hide from older scanners.
RAG Leakage
Retrieval can expose the wrong chunks, tenants, or poisoned context.
AI Security Hiring
Teams need role definitions, skills, and ownership before they can hire.
Shop by format
Every format, one catalog
Featured listings
Available now
The State of AI Security Engineering Report 2026
A research-backed market report on AI security roles, maturity signals, governance evidence, framework adoption, and the emerging AI Security Engineering discipline.
Buy nowAI Security Engineer's Field Guide
A practical field guide for securing AI-enabled products, RAG systems, agent workflows, model integrations, and governance evidence programs.
Buy nowAIPSA Practitioner Journal
A structured practitioner journal for tracking AI Product Security Assessment domains, evidence, findings, and remediation notes.
Buy nowTrust Scanner Desk Pad
A desk pad inspired by Trust Scanner workflows: public artifacts, scorecard dimensions, caveats, and evidence backlog thinking.
Buy nowFramework Crosswalk Poster
A visual reference poster mapping AI security and governance frameworks across attack techniques, risks, governance functions, management-system themes, and scorecard dimensions.
Buy nowSecurity Review Attestation Stationery Pack
A branded stationery-inspired template pack for security review attestations, scope summaries, findings transmittals, and buyer-facing evidence statements.
Buy nowMove from offer selection to a bounded proof of value.
Once the initial need is clear, the buying path should establish fit, define the decision and evidence boundary, confirm the commercial route, execute one bounded engagement or pilot, and resolve the result into a next action.
Offer-to-Pilot Journey
A marketplace listing becomes useful when it leads cleanly from problem selection through scope, pilot, evidence, and production decision.
Governed marketplace journey from offer discovery and scope through representative pilot, evidence review, commercial fit, and production decision.
- 1Discover the offerStart from a buyer problem, route, listing, or partner introduction.
- 2Confirm fitClarify problem, system, delivery model, stakeholder, and commercial motion.
- 3Define a representative scopeSelect an object, workflow, system, cohort, or engagement boundary.
- 4Run a bounded pilotProduce the smallest evidence needed to evaluate product and commercial value.
- 5Review evidence and operating fitAssess output quality, workflow fit, ownership, support, and economics.
- 6Choose the next commercial stateStop, refine, purchase, integrate, license, or expand.
- No fit
- Refine scope
- Purchase or engage
- Integrate or license
A successful first engagement may lead to remediation, retest, recurring assurance, production licensing, or a partner motion. It does not automatically create a long-term commitment or production entitlement.
Enterprise packages
Private offers & annual bundles
Scoped through direct SOW today. Bundle products, services, training, and evidence work into a single enterprise engagement or private offer.
AI Security Workbench
AI security program, trust evidence, and remediation workbench
Request private offerCode Scanner Team License
Recurring AI code and configuration review for product security, AppSec, and developer teams
Request private offerTrust Scanner
AI and security claim scanner for customer-facing trust language
Request private offerAdversarial Range
Deployable AI security lab for RAG, agents, telemetry, and evidence validation
Request private offerAIPSA SCORM Training Package
LMS-compatible AI product security training with a supported SCORM 1.2 preview and additional delivery formats by validated implementation scope
Request private offerWorkforce Platform Partner Add-On
The role-readiness layer for cybersecurity training platforms, cyber ranges, and enterprise security teams. Role taxonomy, Q&A bank, job-market signals, hiring calibration, and workforce reporting — under your brand.
Request private offerScanner Provider OEM Pilot
A bounded OEM pilot that preserves the scanner's finding identity and workflow while adding selected AI-specific findings, connected context, evidence, and optional Attack Path Analysis.
Request private offerAI Launch Security Review
Pre-launch AI security review for product teams shipping LLM features, RAG systems, copilots, agents, or AI workflows.
Request private offerPen Test & Red Team Readiness Packet
Structured readiness assessment for teams scoping an external pen test or red team engagement — scope, authorization, ROE, evidence handling, and vendor criteria.
Request private offerAI Security Academy
Structured AI security training for security, engineering, product, governance, and trust teams — courses, Q&A checks, LMS delivery, and private cohorts.
Request private offerAcademy Content Licensing
Partner-ready AI security training content — courses, Q&A bank, LMS packages, and workforce readiness modules for training platforms, cyber ranges, and enterprise L&D delivery.
Request private offerPacket routing
Every path now has a packet and a Stripe shape.
Self-serve products flow through checkout metadata and launch-room entitlements. Private offers route through SOWs, NDAs, addenda, and invoice-ready terms.
Mutual NDA
Mutual confidentiality protections for pre-sales, delivery, and research collaboration contexts.
Used for NDA baseline
Statement of Work Template
Mission-specific scope, deliverables, timeline, access, assumptions, and acceptance criteria for scoped AI security engagements.
Assessment Terms Addendum
Scope, authorization, evidence use, testing boundaries, safe harbor, retesting, reporting limitations, and reliance limits for AI product security assessments.
Used for Assessment and quote-first services
Commercial Services Addendum
Converts the services framework into scoped paid work with rate card, invoicing, and activation terms.
Used for Retainer and advisory billing
Data Processing Addendum
Controller/processor allocation, data protection obligations, subprocessing, security measures, AI provider boundaries, and customer-data handling for scoped services.
Used for Data handling and public-safe claims
Publication & Claim-Readiness Policy
Claim-readiness criteria for public research, trust pages, scorecards, attestations, sponsor materials, security review outputs, and buyer-facing evidence.
Used for Data handling and public-safe claims · Sponsored research and launch
Payment terms
Self-serve items are prepaid. Private offers use quote-first or invoice-first terms depending on procurement.
Acceptance terms
Accepted on delivery, issuance, or fulfillment initiation based on the offering path.
Fulfillment workflow
start -> scope -> quote / checkout -> webhook -> entitlement -> launch room
Partner offers
Pilots and productization paths for partners
Buyer-facing partner offers lead with the outcome, pressure, inputs, and success criteria. Internal SKU identifiers stay secondary.
Scanner OEM Feasibility Sprint
Scanner Provider
Customers are asking for AI-native coverage, but the invocation and output contract need validation before productization.
Success: The partner can make a defensible go/no-go productization decision.
Discuss an OEM feasibility sprintGraph Context and Path Analysis Pilot
Offensive Platform
The partner wants connected system and authority context, independent path validation, and remediation chokepoints without replacing its attack engine.
Success: The platform can show a useful attack-to-remediation loop using target-, environment-, or system-specific evidence.
Scope a Graph Context and Path Analysis PilotOEM Engine Pilot
Product Company
Add differentiated AI security capability inside an existing product without rebuilding the engine.
Success: The partner can present Workbench outputs inside its own product or service workflow.
Request the OEM Pilot PacketMSSP Service Launch Pilot
MSSP
Launch recurring AI security services with a repeatable catalog, evidence model, and support boundary.
Success: The MSSP can repeat the service with clear ownership and renewal logic.
Request the MSSP Service CatalogConsulting Practice Launch
Consultancy
Build a profitable AI security practice without recreating methodology, tooling, templates, QA, and evidence structures.
Success: The consultancy has a repeatable practice package ready for first engagements.
Request the AI Security Practice Launch PackPrivate-Label Assessment Pilot
Consultancy
Deliver Workbench-enabled professional services under a client-facing partner brand while preserving evidence integrity.
Success: The partner can deliver a branded service without misrepresenting AI Security LLC IP or altering technical evidence.
Scope a Private-Label Assessment PilotWorkforce Platform Pilot
Training Platform
Add employer-legible AI security readiness to an existing learning platform or cyber range.
Success: Learners and administrators can see role-aligned readiness evidence inside the partner workflow.
Request the Workforce Platform Partner PackWorkforce White-Label Productization
Training Platform
Package Workbench workforce intelligence behind the partner's own platform identity and commercial model.
Success: The partner can launch a branded workforce readiness product with clear IP, support, and update boundaries.
Explore Workforce Platform White LabelTechnology Integration Review
Technology Alliance
Validate whether a native product integration is technically and commercially supportable before joint GTM.
Success: Both parties know what is public, projected, fixture validated, native partner confirmed, or live partner validated.
Propose a Technology IntegrationEcosystem
Integrations, connectors & add-ons
Integrations
Jira, Confluence, GitHub, GitLab, Slack, Teams, ServiceNow, Salesforce, Zendesk.
View registryConnectors
Splunk, Microsoft Sentinel, Power BI, Tableau, CloudWatch, OpenTelemetry.
View registryExtensions
Browser, IDE, and repo extensions for AI surface discovery and scanning.
Templates
Policies, playbooks, checklists, and control-mapping starter kits.
Bundles
Assessment + evidence, launch readiness, and team-training packages.
Distribution roadmap
Future marketplace channels
Cloud and partner marketplace packaging is a future distribution goal. Current commercial motion is direct purchase, licensing, and SOW scoping.
Private offers and other procurement paths can be scoped when buyers need AWS-compatible delivery or custom terms.
Planned future channels: Azure, Microsoft AppSource, Salesforce AppExchange, ServiceNow Store, Atlassian Marketplace, and Splunkbase. Not active sales channels today.
Choose the smallest engagement that can answer the decision.
Start with the release, deal, workflow, assessment, workforce, or integration outcome that needs evidence. The scope can expand only after the first bounded motion proves the need.