AI assessments

We assessed ourselves. Then published it.

Most security pages tell you what a company is good at. We publish the evidence behind ours. That includes source reviews against recognised standards and live hostile testing of a non-production deployment. Verdicts and limitations stay intact; sensitive test details do not become an attacker's checklist.

Why we publish these

Transparency over polish

Most security pages list what a company is good at. We would rather show you the real verdicts, failures and limits included. If you are trusting us with your security findings, you deserve the honest version.

No security by obscurity

Hiding how a system works is not a security strategy we believe in. If our controls hold up, they hold up in the open. Publishing how we are built, and where we fall short, is the opposite of hoping nobody looks.

It keeps us honest

A gap with our name next to it in public is a gap that gets fixed. Putting the scores out there puts us on the hook to raise them, which is exactly the pressure we want.

It tells us what you care about

How people react to these reports shows us which controls and concerns matter most to the teams using the product. That tells us where to invest next, so the roadmap follows real concerns rather than guesses.