AgentScan
C
C tier on AI Security Testing ToolsScore 6.8 · #9 of 29
- Android app
- Not listed
- Free plan
- Yes
- Paid plans from
- $29/mo
- Runs on
- api, Web

Summary
AgentScan is ranked #9 of 29 in AI security testing tools on Everything Xiaomi. It runs on API, Web. There is a free plan. Paid plans start at $29/mo.
AgentScan plans and pricing
All plansFree Free $0/month 5 scans per month · 185 attack vectors · 5 categories · auto-detect agent format · JSON results agentscan.sh · 3 Oct 2026
Starter $29/mo $29/month 30 scans per month · 300 attack vectors · 12 categories · PDF reports · full test audit trail · 3 concurrent scans agentscan.sh · 3 Oct 2026
Pro $99/mo $99/month 100 scans per month · 348 attack vectors · 14 categories · custom secrets monitoring · configurable throttling · PDF reports + webhooks · priority support agentscan.sh · 3 Oct 2026
Enterprise Not published Custom Unlimited scans · all 412 attack vectors · all 19 categories · MCP, State Injection, PII · SLA + priority support agentscan.sh · 3 Oct 2026
Compared on AI security testing tools
- Free plan
- Yesagentscan.sh
- Paid from
- $29/moagentscan.sh
- Prompt injection tests
- Yesagentscan.sh
- Jailbreak tests
- Yesagentscan.sh
- Data leakage tests
- Yesagentscan.sh
- Unsafe output tests
- Yesagentscan.sh
- Deployment mode
- cloudagentscan.sh
Facts
- Purpose
- AgentScan provides automated pentesting for LLMs, RAG pipelines, and autonomous agents through an API.agentscan.sh · 3 Oct 2026
- Coverage
- The product says it tests 412 attack vectors across 19 categories, including prompt injection, data exfiltration, jailbreak, and MCP attacks.agentscan.sh · 3 Oct 2026
- Reports
- Scan results include a 0–100 risk score, severity breakdown, remediation advice, and JSON or PDF export with evidence.agentscan.sh · 3 Oct 2026
- Dashboard
- The web dashboard supports agent-format auto-detection, real-time scan progress and error tracking, live throttle adjustment, and PDF downloads.agentscan.sh · 3 Oct 2026
- Agent support
- The documentation lists 12 agent types, including generic HTTP, OpenAI-compatible, Dify, Flowise, n8n, OpenClaw, AutoGPT, OpenHands, Anthropic-compatible, LangChain, and Manus.agentscan.sh · 3 Oct 2026
- Integrations
- Documented connection examples include OpenAI, Groq, LiteLLM, Dify, n8n, Flowise, OpenClaw, AutoGPT, and OpenHands.agentscan.sh · 3 Oct 2026
- Automation
- The REST API queues scans asynchronously, returns a scan ID, and supports completion webhooks.agentscan.sh · 3 Oct 2026
- Framework mapping
- AgentScan maps vulnerabilities to OWASP LLM Top 10 risks and describes mappings to EU AI Act articles and NIST AI RMF functions.agentscan.sh · 3 Oct 2026
- Coverage limits
- The compliance documentation says LLM04 Model Denial of Service and LLM10 Model Theft are not tested in its OWASP mapping.agentscan.sh · 3 Oct 2026
- Security
- The privacy policy says passwords are hashed with Argon2id, API keys are stored as HMAC-SHA256 hashes, connections use TLS, and outbound requests have SSRF protection.agentscan.sh · 3 Oct 2026
- Data handling
- The privacy policy says scan results remain in the account until deleted and account data is permanently removed within 30 days after account deletion.agentscan.sh · 3 Oct 2026
- Hosting
- The privacy policy says user data is stored on Hetzner servers in Germany (EU).agentscan.sh · 3 Oct 2026
- Support
- The Pro plan lists priority support, while Enterprise lists dedicated support, an SLA, and priority support.agentscan.sh · 3 Oct 2026
- Authorized use
- The terms say customers may scan only agents they own or have explicit written authorization to test.agentscan.sh · 3 Oct 2026
Best AgentScan alternatives
See all 12Where it ranks on Everything Xiaomi
Is AgentScan yours?
Claim it for free: prove the domain, then correct facts, plans and screenshots. An editor reviews every change.
Sources
- agentscan.sh· checked 3 Oct 2026
- agentscan.sh/docs· checked 3 Oct 2026
- agentscan.sh/privacy· checked 3 Oct 2026
- agentscan.sh/terms· checked 3 Oct 2026


