How It Works

What is PentestLoop?

PentestLoop uses evolutionary red-teaming to find weaknesses in AI agents. It generates adversarial attack strategies, tests them against your agent in multi-turn conversations, then evolves the most effective attacks over multiple generations — mimicking how real attackers adapt.

What are campaigns?

A campaign is an automated adversarial test run against a target AI agent. Each campaign evolves a population of attack strategies over multiple generations, scoring them on how effectively they expose vulnerabilities.

Understanding the stats

Total Campaigns — how many test runs you've created. Active — campaigns currently running. Vulnerabilities — confirmed weaknesses found. Conversations — total attacker-agent dialogues executed.

Glossary

GenerationOne evolution cycle — attacks are tested, scored, and the best ones are mutated/crossed to create the next generation.
FitnessA 0–1 score measuring how effective an attack is at exposing weaknesses. Higher = more effective.
VulnerabilityA confirmed weakness in your agent — e.g., leaking data, ignoring safety guardrails, or producing harmful content.
PopulationThe pool of attack strategies competing in each generation. Larger populations explore more strategies.

Total Campaigns

6

Active

0

Vulnerabilities

0

Conversations

198