Latest Articles

Insights and guides on AI security and LLM application development

Scanning LLM application code for OWASP Top 10 Vulnerabilities

Here we introduce a mapping between the OWASP Top 10 Risk & Mitigations for LLMs and Gen AI Apps and code scans that can detect susceptibility to these risks.

April 7, 2025Andrew Marble

Code Quality in LLM Applications: Beyond Model Performance

A deep dive into how code quality impacts LLM application security and performance, and why organizations need policies to enforce responsible development practices.

April 1, 2025Andrew Marble

Scanning the OpenAI Cookbook with Kereva-Scanner

OpenAI maintains a community contributed 'Cookbook' of patterns for using their API. We scanned it for code issues.

March 20, 2025Andrew Marble

Deterministic scans of AI model implementations

Beyond evals: A look at scanning tools for AI model security and performance.

March 15, 2025Andrew Marble

Evals are not all you need

Evaluations are useful for ranking models but flawed as a guarantee of software performance.

March 12, 2025Andrew Marble