OpenSecureAI Scanner

Web · Windows · Mac · Linux · API · paid plans from $49/mo

Freedom report

Three barsScore 6.6

  • Free tierA free tier is on its own pricing page
  • Open codeNo open-source code on record
  • Runs widely4 of 6 device platforms
  • DocumentedPlans, terms and facts published

OpenSecureAI Scanner checks untrusted text for patterns associated with prompt injection, jailbreaks, system-prompt leaks, and data exfiltration. Its scanPrompt library API returns a score from 0 to 100, a risk level, and findings for individual rules. Developers can use it as an npm package, CLI, GitHub Action, or REST API; the package targets Node 18+ and has no runtime dependencies. Authenticated hosted scans add detections for obfuscation and encoding evasions, indirect injection, tool abuse, multilingual overrides, and de-obfuscation. The LLM Gateway can forward prompts to a selected OpenAI, Anthropic, xAI, or Groq provider and scan the response. Documentation says authenticated scans save a dashboard summary without retaining raw prompt text, and gateway provider keys are not stored or logged. Free access includes in-browser tools and npm packages; the Free plan lists 2,000 API requests per month, while Pro costs 49.00 USD per month. The maker says paid checkout is not self-serve, so customers need to contact sales for setup. The platform is intended for AI application teams, agent and MCP developers, security reviewers, learners, and red-teamers.

Who it is for

It suits developers and security teams checking text supplied to AI systems, as well as agent and MCP developers, learners, and red-teamers. Teams wanting hosted advanced scans or the LLM Gateway should note the listed plan limits and sales setup requirement.

What is good

  • Available as an npm package, CLI, GitHub Action, and REST API.
  • Returns a score, risk level, and rule findings.
  • Authenticated scans add advanced detection categories.
  • Documentation says raw prompt text is not stored.
  • Free plan lists 2,000 API requests monthly.

What to know first

  • Free plan is limited to 2,000 API requests monthly.
  • Anonymous API uses the basic engine with IP rate limiting.
  • Paid checkout is not self-serve.
  • Pro costs 49.00 USD per month.

Freedom251 review

OpenSecureAI Scanner: the full review

OpenSecureAI Scanner offers several ways to check untrusted text, with additional hosted detections for authenticated scans. Review the request limits and contact-sales setup for paid access before choosing it.

Overview

OpenSecureAI Scanner checks untrusted text for prompt-injection and related risks, with options ranging from in-browser tools and a local npm package to an authenticated hosted API. It best suits developers and AI security teams who want to add text screening to a workflow; its free entry points are broad, but API quotas and the contact-sales setup for paid plans shape its appeal.

The scanPrompt library returns a 0–100 score, a risk level and findings for individual rules. The scanner targets prompt injection, jailbreaks, system-prompt leaks and data-exfiltration patterns. That makes it useful as one screening layer, rather than a complete security program: the published scope centers on untrusted text and does not establish coverage for every threat to an AI system.

Key features

Developers can use the scanner through an npm package, CLI, GitHub Action or REST API. The package targets Node 18 and later and has no runtime dependencies, a practical fit for teams integrating checks into Node-based applications or build workflows. In-browser tools and npm packages are free and open; anonymous API use is rate-limited by IP and runs the basic engine.

Authenticated hosted calls add detections for obfuscation and encoding evasions, indirect injection, tool abuse, multilingual overrides and de-obfuscation. This is the clearest reason to use the hosted engine when the basic checks are not enough, although accessing it through the free API tier requires an API key and remains subject to a monthly request cap.

The LLM Gateway can forward prompts to a selected OpenAI, Anthropic, xAI or Groq provider and model, then scan the response. Documentation says authenticated scans save a summary to the dashboard but do not store raw prompt text; provider keys used with the gateway are not stored or logged. The company says it responds to vulnerability reports within 48 hours.

Pricing

OpenSecureAI is freemium. The Free plan is $0/month and includes 2,000 API requests per month, 30 requests per minute per key, in-browser tools and npm packages, plus the hosted advanced engine with an API key. It suits evaluation or modest-volume use, but the request cap and rate limit may constrain sustained production traffic.

Pro costs 49.00 USD per month, billed $49/month. It raises the allowance to 50,000 API requests per month and 120 requests per minute per key, and adds hosted AI remediation, LLM Gateway completions and priority email support. This is the published paid option for teams that need materially more capacity or gateway access. Paid checkout is not self-serve: customers must contact sales to be set up.

Team has custom pricing and is billed Custom. It provides 250,000 API requests per month and 300 requests per minute per key. Team seats and SSO, along with custom rules and an SLA, are planned rather than current inclusions, so buyers needing those capabilities should not treat them as available features.

Platforms

OpenSecureAI Scanner supports API, Linux, macOS, web and Windows. Its npm package and CLI suit developer workflows, while web tools offer a browser-based route. Both deployment modes are supported.

Who it's for

The platform is aimed at AI application teams, agent and MCP developers, security and compliance reviewers, learners and red-teamers. Developers looking to screen text through an API or build pipeline have the most directly defined use case. Teams seeking broader AI security work should weigh whether this scanner’s stated text-pattern focus matches their needs.

Pros and cons

  • Pros: Free browser and package access make it possible to start without a paid plan; multiple integration formats suit different developer workflows.
  • Pros: Authenticated hosted scans extend detection to evasions, indirect injection and tool abuse, while the documented handling avoids retaining raw prompt text.
  • Cons: The free API allowance is 2,000 requests monthly, with a 30-per-minute limit per key.
  • Cons: Paid access requires contacting sales, and Team’s seats, SSO, custom rules and SLA are planned, not included as current capabilities.

Alternatives

For a free option from the AI Verify Foundation, Project Moonshot is available across API, desktop, web and self-hosted platforms.

Promptfoo is worth considering for local or self-hosted LLM evaluation: its free Community plan includes 10k red-team probes per month and all LLM evaluation features, model providers and integrations.

PromptGuard offers 20,000 scans a month on its free plan, with one API key, one project and 24-hour log retention; its Team plan is 19.00 USD per month.

PyRIT is a free open-source framework for users comfortable with a Python environment and configured AI endpoints. Augustus is another free, Apache 2.0-licensed open-source option, with provider credentials potentially needed for API use. Basilisk is free AGPL-3.0 software distributed as a CLI, desktop app, Docker image or source, for authorized use only.

AgentScan may suit readers who want a web-based agent scanner: its free plan allows five scans per month and covers 185 attack vectors across five categories. Giskard offers a free open-source library for local deployment, including a basic LLM vulnerability scan and basic RAG evaluation report.

Browse more options in AI Security Testing Tools or AI Red Teaming Tools.

Verdict

OpenSecureAI Scanner is a sensible choice for developers and AI teams who want accessible text screening, several integration routes and stronger hosted detections behind an API key. Its free tools lower the barrier to trying it, but the free API cap is modest and paid setup requires sales contact. Look elsewhere if your priority is a larger free scan allowance, or if you need Team’s planned seats, SSO or custom rules now.

OpenSecureAI Scanner plans and pricing

All plans
Pro $49/mo $49/month 50,000 API requests/month · 120 requests/minute per key · hosted AI remediation and LLM Gateway completions · priority email support opensecureai.com · 2 Oct 2026
Team Not published Custom 250,000 API requests/month · 300 requests/minute per key · team seats and SSO planned · custom rules and SLA planned opensecureai.com · 2 Oct 2026
Free Not published $0/month 2,000 API requests/month · 30 requests/minute per key · in-browser tools and npm packages · hosted advanced engine with API key opensecureai.com · 2 Oct 2026

Compared on AI security testing tools

Free plan
Yes
Paid from
$49/mo

Best OpenSecureAI Scanner alternatives

See all 12