AI Code Mini-Scan
$499 one-time
Find the top AI attack paths in one private repo. Attack-path report, SARIF, Markdown, and validation plan. No subscription required.
Start with the pressure: sales, launch, abuse, agents, data, or guardrails
SECENG WORKBENCH
AI Attack-Path SAST
Scan LLM apps, RAG workflows, MCP servers, browser agents, AI coding agents, tool-calling systems, and AI gateways for AI-native code risk. SecEng Code Scanner groups static signals into attack paths, ranks CVE candidates without overstating exploitability, generates safe validation plans, and exports Jira, SARIF, VS Code, and buyer-ready marketplace evidence.
AI-native SAST
Static signals grouped into attack paths instead of noisy line-by-line findings.
MCP / RAG / agents
Targets LLM apps, RAG workflows, browser agents, AI coding agents, and tool-calling systems.
SARIF / VS Code / Jira
Exports developer-ready diagnostics, tickets, and evidence with the language teams already use.
Marketplace-ready evidence
Supports AppExchange, AgentExchange, Splunkbase, GitHub, VS Code, and CI readiness workflows without claiming certification.
Early access
Licensed tooling plus Workbench-backed delivery for teams that need speed now.
SecEng Workbench
AI Attack-Path SAST
Attack-path SAST
Static signals grouped into source → sink → missing-guard paths.
Marketplace readiness
Pre-submission evidence for app review and security-review blockers.
CVE candidate triage
Rank likely research candidates without overstating exploitability.
Developer exports
SARIF, VS Code diagnostics, Jira tickets, Markdown, and control matrices.
Safe validation planning
Mock-first harness plans for MCP tools, browser actions, RAG tenant boundaries, model JSON dispatch, prompt logging, and unsafe render paths.
Attack-path SAST
Static signals grouped into source → sink → missing-guard paths
Marketplace readiness
Evidence for app review, buyer review, and submission blockers
CVE candidate triage
Rank likely research candidates without overclaiming
SARIF / VS Code / Jira
Developer exports and remediation queues
Core capabilities
Identify MCP servers, RAG systems, browser agents, AI coding agents, tool-calling apps, AI gateways, and model supply-chain surfaces before scanning deeper.
Extract entrypoints, sources, sinks, guards, missing controls, framework signals, and path context from AI code.
Compress noisy static findings into prioritized AI attack paths: model/tool/source/sink/guard relationships that engineering teams can review and fix.
Separate vulnerability candidates from commercial control gaps, test-only noise, and low-context static signals.
Generate mock-first harness plans for MCP tools, browser actions, RAG tenant boundaries, model JSON dispatch, prompt logging, and unsafe render paths.
Export SARIF, VS Code diagnostics, Jira-ready tickets, disclosure case drafts, control matrices, and buyer evidence packages.
Evidence & signals
Risk Classes
Outputs
Evidence Levels
Red team + Blue team
Red Team Use
Blue Team Use
Risk classes
Code Scanner looks for the places where AI code creates delegated action, data exposure, unsafe rendering, policy bypass, or evidence gaps. The output is not a pile of raw static findings. It is a review path.
MCP tool side effects without approval
Browser-agent actions without domain or action policy
RAG/vector retrieval without tenant boundaries
Model-generated JSON controlling trusted actions
Prompt, log, trace, and cache exposure before redaction
Streaming model output rendered as unsafe HTML or markdown
AI gateway auth, budget, and model-policy gaps
Unsafe model artifact loading and unpinned supply-chain paths
Missing forensic evidence for AI actions
Outputs
The deliverable set is built for engineering, marketplace readiness, buyer security review, and disclosure triage when the evidence supports it.
AI Code Attack-Path Report
CVE Candidate Register
Safe Validation Plan
Harness Plan
Disclosure Case Draft
Buyer Evidence Package
Marketplace Readiness Report
Control Matrix
Jira Tickets
VS Code Diagnostics
SARIF
Differentiation
Classic SAST emits findings. SecEng Code Scanner emits AI attack paths: where model output, tools, source data, sinks, and missing guards combine into reviewable risk.
Generic SAST
dangerous calls
SecEng Code Scanner
model/tool/source/sink/guard paths
Generic SAST
raw findings
SecEng Code Scanner
prioritized AI attack paths
Generic SAST
generic remediation
SecEng Code Scanner
Jira-ready fixes and control evidence
Generic SAST
pass/fail output
SecEng Code Scanner
validation plans, CVE candidates, and marketplace evidence
Evidence levels stay explicit
SecEng Code Scanner does not claim every static result is exploitable. Findings are labeled by evidence level so product, security, legal, and engineering teams know what can be said, what needs validation, and what belongs in a private remediation backlog.
Marketplace readiness
Use Code Scanner for pre-submission evidence, submission blocker reports, buyer-review proof, and remediation planning for AI-enabled apps, managed packages, partner apps, extensions, and integrations.
It supports readiness workflows. It does not replace official Salesforce, Splunk, GitHub, AWS, partner, or marketplace security review.
Architecture
SecEng Code Scanner combines native AI security rules, source-context enrichment, path grouping, validation planning, and evidence export. It can also ingest customer-owned scanner output when the customer has the right to use it.
Import support does not mean SecEng bundles or resells third-party commercial tools or maintained rule sets.
Engine stages
Inputs it can consume
Pricing & access
Use a license for repeatable scanning and developer exports, or scope a Workbench-backed review when a marketplace submission, enterprise buyer, or disclosure candidate needs human triage.
AI Code Mini-Scan
$499 one-time
Find the top AI attack paths in one private repo. Attack-path report, SARIF, Markdown, and validation plan. No subscription required.
Starter
$199/mo
1 private repo, monthly scans, AI attack-path report, SARIF and Markdown exports.
Team
$599/mo
3 private repos, weekly scans, VS Code/SARIF/Jira exports, buyer evidence package, control matrix, and safe validation plans.
Marketplace Pro
$1,299/mo
5 apps/repos/packages, marketplace-readiness reports, white-label evidence, CVE candidate triage, variant and patch-diff checks.
AI SECURITY ENGINEERING WORKBENCH
Start with a licensed scan or scope a Workbench-backed review. We’ll identify AI-native code attack paths, rank the evidence, and produce the remediation and marketplace-readiness artifacts your team can actually use.
Also in the Workbench
WHAT AI DO WE HAVE?
SecEng Surface Scanner
Browser, Repo & IDE AI Discovery
WHAT DID IT ACTUALLY DO?
SecEng Runtime Proxy
MITM Capture, Replay & Runtime Evidence
HOW CAN IT FAIL UNDER ATTACK?
SecEng Adversarial Range
AI Red-Team Scenario Harness
WHAT CAN AGENTS ACTUALLY DO?
SecEng Authority Graph
Agent Authority & Approval-Path Analysis
WAS RETRIEVAL AUTHORIZED?
SecEng RAG Test Harness
Retrieval & Context Security Test Harness