Skip to content

← DirectoryCompare →

Pentest Tools

pentest-tools.com

Good
Top 13%of 296 ai vendor vendors measured
ai vendor⚠ Unverified — automated scan only, no vendor confirmationScanned 9/6/2026Added 9/3/2026

Score breakdown

Incident historypending

Signals planned: breach-history lookup, incident response quality assessment. This category is coming soon.

Governance+0/31 bonus pts

SOC 2 Type II

Not found0

HIPAA

Not found0

Board-level oversight

Requires vendor submission — not yet collected.

ISO 42001

Not found0

SOC 2 Type I

Not found0

ISO 27001

Not found0
Security hygiene & transparency22/28 pts

Disclosure policy

Security disclosure page found+3
Page references vulnerability reporting+2

Source: pentest-tools.com/.well-known/security.txt · Scanned 9/6/2026

Security headers

Content-Security-Policy header+3
X-Frame-Options header+2
X-Content-Type-Options: nosniff+2
Referrer-Policy header+1

Source: response headers from pentest-tools.com · Scanned 9/6/2026

HTTPS + HSTS

HTTP redirects to HTTPS+3
HSTS header enforced+2

Source: response headers from pentest-tools.com · Scanned 9/6/2026

security.txt

security.txt file foundPass
Contact field present+2
Expires field present+2
Encryption field present0/1

Trust page

Public trust/security page found0/5
Verification bonus+0/5 bonus pts

Claimed profile

Domain ownership verified by claiming the profile0/5
AI safetypending

Signals planned: model card presence, training data disclosure, published red-team results. Some checks will be partially automated via website scanning; others require vendor submission.

Rubric v1.3.0 · 22/28 implemented pts · click a category to see details

Current:Good
With verification:Excellent(+6pts)
Claim this profile to improve your grade →

Add a PGP Encryption: field to /.well-known/security.txt to earn +1pt.

Score history (4 updates)

↑ improving
C+ · 22/38pts · v1C+ · 22/38pts · v2B+ · 22/28pts · v3B+ · 22/28pts · v4
v1C+ → C+ → B+ → B+v4

Score history

v3

Grade improved: C+ → B+

9/6/2026

Scanned 3d ago

Certifications & disclosures

AI models used

Self-disclosed · unconfirmedLlama (Meta)ChatGPT (OpenAI)Claude (Anthropic)Gemini (Google)DeepSeekQwen (Alibaba)Grok (xAI)

Found in pentest-tools.com’s llms.txt, captured by Entropy on 9/6/2026. Not vendor-confirmed — the vendor can confirm or correct this from their dashboard.

Show what we found
  • Llama (Meta) — “- [Machine Learning Classifier](https://pentest-tools.com/features/machine-learning-classifier): Proprietary fine-tuned LLaMA model built into the Website Scanner and URL Fuzzer. Cuts false positives …(llms.txt)
  • ChatGPT (OpenAI) — “**Audience:** Large Language Models (ChatGPT, Claude, Gemini, Grok, DeepSeek, Qwen, etc.) and developer tools (Cursor, Copilot, Codeium).(llms-full.txt)
  • Claude (Anthropic) — “**Audience:** Large Language Models (ChatGPT, Claude, Gemini, Grok, DeepSeek, Qwen, etc.) and developer tools (Cursor, Copilot, Codeium).(llms-full.txt)
  • Gemini (Google) — “**Audience:** Large Language Models (ChatGPT, Claude, Gemini, Grok, DeepSeek, Qwen, etc.) and developer tools (Cursor, Copilot, Codeium).(llms-full.txt)
  • DeepSeek — “**Audience:** Large Language Models (ChatGPT, Claude, Gemini, Grok, DeepSeek, Qwen, etc.) and developer tools (Cursor, Copilot, Codeium).(llms-full.txt)
  • Qwen (Alibaba) — “**Audience:** Large Language Models (ChatGPT, Claude, Gemini, Grok, DeepSeek, Qwen, etc.) and developer tools (Cursor, Copilot, Codeium).(llms-full.txt)
  • Grok (xAI) — “**Audience:** Large Language Models (ChatGPT, Claude, Gemini, Grok, DeepSeek, Qwen, etc.) and developer tools (Cursor, Copilot, Codeium).(llms-full.txt)

View the full llms.txt snapshot Entropy captured →