Prompt Risk Scanner

Local-first checks. No API calls. Policy-driven.

Results

How it works
  • Loads rule packs from /scanner/rules/*.json (no network beyond your site).
  • Runs deterministic regex & heuristics; explains every hit.
  • Profiles weight categories (e.g., Agents emphasize exfil & tool-abuse).
  • Strict mode raises scores, adds extra patterns.