ifivo
ProductHow it worksTry itPricingDocs
Sign inStart free
Start
  • Overview
  • Quickstart
Concepts
  • Deterministic vs probabilistic
Reference
  • API reference
  • Policy language
  • MCP server
  • Sunset Radar
Security
  • Prompt-injection defense
  • Incident writeups
More
  • Integrate (one-pager)
  • Try the engine

Incident writeups

Reproducible attack walkthroughs against AI agents. Every writeup is a synthetic scenario you can replay against the live simulator, with the exact detector signals, policies, and decisions that stop it. No real customer names, no invented metrics. Just the attack, the defense, and the code.

OWASP LLM01ExfiltrationSupport agentApril 22, 2026
Poisoned support ticket exfiltrates an API key

An attacker opens a benign-looking support ticket. Buried in the body is a classic prompt injection that tells the agent to email credentials to an external address. Walk through the detector signals, the taint analysis, the policy decision, and the reviewer experience.

ifivo

The runtime control plane for AI agents. Let agents act, without losing control.

Product
  • How it works
  • Runtime guardrails
  • Approval routing
  • Prompt-injection defense
  • Free 30-day audit
  • Try the engine
  • Pricing
  • Integrate
  • Compare
Developers
  • Docs
  • Quickstart
  • API reference
  • Policy language
  • MCP server
Company
  • Sign in
  • Start free
  • Security contact
Legal
  • Security
  • Privacy
  • Terms
© 2026 ifivo, inc. All rights reserved.
security@ifivo.com·Built for agents that touch real systems.