Secure your LLMs.
Evidence for your compliance file.
Shield LLM runs automated security tests on any AI chatbot: prompt injection, data extraction, jailbreaks. Security grade, detailed vulnerabilities, and a timestamped record you can attach to an EU AI Act file, from a single command.
Your AI chatbots are already under attack.
Most are vulnerable.
Production LLMs pass classic web audits. They fail against LLM-specific attacks: prompt injection, data extraction, guardrail bypass.
The attacks a classic scanner never sees
LLMs introduce a completely new attack surface. Your WAF, your DAST, your annual pentest: none of them are equipped for it.
- LLM01Prompt injection that hijacks model behavior
- LLM02Sensitive information leakage in responses
- LLM06Excessive agency (unauthorized actions)
- LLM07System prompt extraction via social engineering
- LLM09Disinformation and exploitable hallucinations
Three pillars. One tool.
Shield LLM combines automated red teaming, AI-judge analysis and regulatory compliance in a CLI you install in one command.
Automated red teaming
Full coverage of the OWASP LLM Top 10: prompt injection, system extraction, excessive agency, multi-turn jailbreak, supply chain. Single-turn and multi-turn attacks.
OWASP LLM TOP 10 · CRESCENDOLLM-as-Judge
AI-driven analysis goes beyond regex. A judge model evaluates each response in context to catch nuanced vulnerabilities that pattern matching misses.
3 LAYERS · CONTEXT + RULES + JUDGEEU AI Act evidence
Automatic scoring mapped to articles 5, 9, 10, 13, 14, 15 and 50 of the regulation, with the Article 50 transparency probes that apply to a chatbot today. PDF report, actionable remediations, and a checksummed JSON bundle for your file.
7 ARTICLES · PDF + JSON EXPORTEU AI Act. What actually applies.
Article 50 transparency has been enforceable since 2 August 2026 and the Digital Omnibus did not defer it. The high-risk requirements of articles 9 to 15 move to December 2027. Shield tells you which of the two binds your system, then measures what it can and says what it cannot.
Assess my obligations →Obligation profile · support-bot.acme
Your prompts never leave your environment.
Shield LLM runs as a CLI from your environment, calling your chatbot endpoint directly. No proxy, no MITM, no credentials to share.
Sent to our servers: your chatbot's replies (to score the scan, never to train models) and the report summary for your dashboard.
- 100% local execution from your environment
- Your chatbot credentials stay in your config, never sent to us
- Data hosted in Europe · encryption at rest
- PDF and JSON evidence export, checksummed so alteration is detectable
Zero interception
Prompts go straight to your chatbot endpoint. No relay, no proxy.
Credentials stay local
Your shield.config.json lives on your machine. We never see your endpoint secrets.
Isolated storage
Scan data is scoped to your environment. Nothing persists without your action.
Verifiable output
Every result carries evidence, confidence and an OWASP mapping. Export as PDF, or as a JSON bundle with a SHA-256 checksum.
Frequently asked questions
Everything you need to know about Shield LLM security testing.
What happens during a scan?
Is my data sent to a server?
Does it work with any chatbot?
How long does a scan take?
How is the security grade calculated?
How much of the EU AI Act does Shield LLM cover?
Secure your AI before the attackers.
Install the Shield LLM CLI and run your first scan in minutes. No SDK, no code changes.

