Skip to main content
AI Security Lab

AI Security Lab

Interactive tools and practical frameworks for evaluating LLM, agentic AI, MCP, and RAG systems.

These tools are designed to help practitioners think through AI system risk, tool access, retrieval, autonomy, and control mapping. They are simplified educational aids, not formal audits or certifications.

3 interactive tools
0 data collected
100% runs in your browser
Personal educational tool — Personal educational tool. These tools are part of Andrew Dannenberger's personal professional website. They are inspired by CIS Controls AI Companion Guides and related public frameworks, but are not official CIS assessments, audits, certifications, or employer products. Results are educational approximations, not formal security evaluations.
01 Live
Practical

AI System Risk Triage

Answer a set of questions about your AI system and generate a basic risk profile covering exposure, data sensitivity, tool access, control gaps, and key recommended controls.

⏱ 3–5 minutes
AI/LLM AI Agents MCP
Open →
02 Live
Practical

MCP Tool Risk Explorer

Select the tools an MCP-connected AI agent can access and see how risk changes across authorization scope, tool type, data sensitivity, and action impact.

⏱ 3–5 minutes
MCP
Open →
03 Live
Practical

MCP Security Checklist

An interactive checklist for securing MCP-connected AI agents — authorization, tool boundaries, human oversight, content trust, auditing, and supply chain. Track your coverage and copy the result.

⏱ 5 minutes
MCP
Open →
04 Coming Soon
Intro

Prompt Injection Threat Walkthrough

Explore how untrusted instructions enter AI workflows through direct user input, retrieved documents, tool output, and external content — with annotated examples of each pattern.

⏱ 5 minutes
AI/LLM AI Agents
Not yet available
05 Coming Soon
Practical

RAG Security Review

Evaluate your retrieval architecture across retrieval trust, data source permissions, per-user authorization, source freshness, and exposure to indirect prompt injection.

⏱ 5–7 minutes
AI/LLM
Not yet available
06 Coming Soon
Advanced

Agentic AI Control Map

Map security controls to each layer of an agentic AI system: model, agent, tool, data, action, logging, and human review. Identify gaps and explore control options per layer.

⏱ 5–7 minutes
AI Agents MCP
Not yet available

How This Lab Works

01

Practitioner-first

Tools are designed for security practitioners, developers, and AI adopters — not compliance officers. The goal is actionable thinking, not checkbox completion.

02

No backend, no tracking

All tools run entirely in your browser. No data is sent anywhere, no account required, no session is stored.

03

Grounded in public frameworks

Tools are inspired by CIS Controls Companion Guides, OWASP LLM Top 10, and NIST AI RMF — simplified and explained in plain language.

Sources & Inspiration

CIS Controls v8.1 Model Context Protocol (MCP) Companion Guide (Principal Co-author)
CIS Controls v8.1 AI and LLM Companion Guide (Collaborator)
CIS Controls v8.1 AI Agents Companion Guide (Collaborator)