Cybersecurity Vulnerability Audit

Find the vulnerabilities your scanner cannot see.

A vector store with no tenant scoping. An agent tool holding a credential it never needs. A system prompt recoverable in four turns. None of these carry a CVE, so nothing in your stack reports them. Trustra audits them against a versioned knowledge warehouse and puts every finding on a verifiable evidence chain.

What it does

A knowledge warehouse, a scan, and a prediction layer.

Conventional scanning enumerates what someone has already cataloged. That leaves the whole AI estate unaudited, and it never tells you which findings actually matter to you.

01

Vulnerability knowledge warehouse

Weaknesses, vulnerabilities, adversary techniques, controls, asset classes, and exploitation signals as one graph. Versioned and sealed, so an audit reproduces exactly a year later.

02

Scan across three match tiers

Package identities resolve to known vulnerabilities. Declarative rules test configuration. Unstructured evidence goes to assisted review. Every finding records which tier produced it.

03

Exposure ranked to your estate

Exploitation in the wild, reachability, asset exposure, and your confirmed compensating controls. Every score decomposes — no ranking you cannot explain to a board.

04

Predicted attack paths

Composite exposure no single-asset scan sees: chatbot to agent to over-scoped tool to customer database. Each path names the single cheapest hop to break.

05

Control decay forecast

Which controls will have drifted out of compliance in ninety days, from evidence timestamps and observed cadence. A point-in-time audit becomes a remediation schedule.

06

Tamper-evident deliverable

Findings, working papers, executive summary, findings register, and a prediction annex. Each sealed and carrying a reference that resolves against the hash-chained ledger.

What it catches

The weaknesses with no CVE to match.

Twenty-two controls across AI supply chain, LLM application security, agent and tool security, retrieval, model operations, and governance — extending to your conventional infrastructure so a single attack path can cross both.

Cross-tenant retrievalExcessive agent scopeMissing approval gatesPrompt injection exposureUnverified model weightsUnsafe artifact formatsSecrets in promptsShadow AI systemsUnauthorized ingestionUnbounded consumption
ENGAGEMENT SCAN · 22 CONTROLS
8
PASS
12
FAIL
2
NEEDS REVIEW
66.8%
WEIGHTED RISK
AGT-01 tool scopecritical
RAG-01 tenant scopingcritical
AIS-04 known exploited2 in KEV
LLM-02 output handlingpass
attack paths found2 to crown jewels
chain integrity: intact · 58 entries
See it in full

The whole deliverable, not a teaser.

A complete sample engagement generated by the workbench — twelve confirmed findings, ranked exposure, two attack paths, and the prediction annex. Synthetic evidence, real engine output.

Download the sample report

Pricing

The audit is free. The plan is the product.

Run the audit and find out where you stand at no cost. When you want the order to fix things in, that is the paid tier.

Free

Audit

A complete, defensible audit — not a teaser. Everything here is yours to keep and to show an auditor.

  • Every control tested, every finding with severity
  • Weighted risk and the formal opinion
  • Ranked exposure — which findings actually matter to you
  • Tamper-evident evidence chain and a reference anyone can verify
  • Findings register as CSV
Paid

Audit + Remediation

Everything in Audit, plus what to do about it and in what order.

  • Concrete remediation steps for every finding
  • Root-cause grouping — findings collapse onto the systems causing them
  • A sequenced plan ordered by leverage, not severity
  • Attack paths, and the cheapest hop to break each one
  • Predicted weaknesses and the control decay schedule

The free audit never hides a finding. Where a paid section is withheld, the report says so and states the real count — if two attack paths were found, the free report tells you two were found. A security report that quietly omitted them would be a false assurance, not a smaller feature set.

How it runs

Read-only, and it never leaves your cloud.

The workbench ingests exports you produce. It holds no credentials, opens no connection to your systems, and cannot modify anything it audits.

Your cloud

Deployed to your account

Runs in your own hyperscaler tenancy from the marketplace, so your evidence stays where it already lives. Report bodies are anonymised before anything leaves.

Managed

Or hosted by us

Prefer not to host? Run it in Trustra tenancy instead. Same engine, same deliverables, same evidence chain.

Air-gapped

Fully offline

The knowledge warehouse ships as a sealed snapshot. No network needed to scan, predict, or report — an air-gapped engagement is a first-class case.

Where the judgment sits

The engine proposes. A named auditor decides.

No result, score, or prediction is final without auditor sign-off. The code that computes results, severity, and the opinion contains no model call and no network call — enforced by a test, not by a promise. Predictions live in a separate register, carry no severity, and become findings only when an auditor collects evidence confirming them.

Audit the stack nothing else is auditing.

Tell us what you run. We will scope the engagement around your estate, or set the workbench up for your own team to run.

The platform

Explore the rest of the platform