Home Services Products Training Portfolio Partners About Contact
AI Engine — Live
Autonomous PTaaS

Klue — The AI That Runs
the Whole Pentest

An autonomous penetration testing engine that plans, adapts and exploits the way a seasoned red teamer would — then writes the report your auditor actually wants. Part of a complete PTaaS platform.

The Problem

Security Teams Are Stuck

Legacy Pentesting
Expensive, slow, and point-in-time. A single mid-market pentest takes weeks to schedule and produces a PDF that is stale the day it lands. Once or twice a year at best.
Traditional Scanners
Nessus, ZAP, Prowler and Snyk are fast but fragmented across five tools. They produce low-signal noise and miss the creative, multi-step attack paths real adversaries use.

Neither gives you continuous, realistic, adversary-grade coverage at a price that fits a monthly budget. Klue was built to close that gap.

Every Scan Delivers
What a Klue Report Contains
  • The full attack chain, step by step, as it was executed
  • CVSS score and CWE classification for every finding
  • Screenshots and HTTP request/response evidence
  • Remediation guidance specific to your stack
  • Compliance mapping to SOC 2, ISO 27001, PCI-DSS, HIPAA, NIST, GDPR
  • An executive summary your leadership can actually read
Get a Sample Report →
Benchmark

Benchmark Results

100%
Precision
All 48 findings validated — zero noise
0
False Positives
Competitors returned up to 220
76.5%
Recall Rate
Higher than every rule-based tool tested
~30m
Per Engagement
Fits inside CI/CD pipelines
Benchmark Methodology
SAST benchmark against an intentionally vulnerable training application. Ground truth set by hand before scoring. 48 vulnerabilities. Same source, same commit, four tools side by side. Rule-based comparators landed at 72.7%, 61.1%, and 9.5% precision. The lowest-precision competitor returned 220 false positives. Klue returned zero. Request the full methodology document →
The Landscape

Where Klue Sits Among Your Options

CapabilityKlueTraditional scannersAnnual pentest
Reasons about application logic & chains vulnerabilitiesYes — plans like a red teamerNo — predefined checksYes
Validated findings, no unconfirmed noiseYes — 0 false positives in benchmarkHigh false-positive ratesYes
FrequencyContinuous — on demand or per deployContinuousOnce or twice a year
Time to results30 minutes – 6 hoursMinutes – hoursWeeks to schedule & deliver
Compliance-mapped, auditor-ready reportYes — every scanPartial — raw findingsYes
Cost modelSubscription from $89/moPer-tool licensing, several tools neededFive-figure engagements

Klue complements rather than replaces expert-led testing: for full-scope red teaming and compliance-mandated manual assessments, our VAPT and red team services cover what automation can't.

Engagement Depths

Four Ways to Engage Klue

Pick the depth that matches your risk tolerance and time window.

QUICK · 30 MIN
Opportunistic Attacker
A rapid surface sweep for known exposures and common misconfigurations. Ideal for CI/CD gates and pre-deployment checks.
FOCUSED · 1 HOUR
Targeted Attacker
Concentrated testing on a specific area: an auth flow, an API endpoint, a critical user journey. Good for post-feature validation and bug bounty prep.
STANDARD · 3 HOURS
Determined Adversary
Methodical, multi-stage testing including authenticated flows. Best for sprint reviews and change validation.
DEEP · 6 HOURS
Advanced Threat Actor
A full red-team campaign with chained exploitation, lateral thinking and deep reconnaissance. For audits, pre-launch validation and M&A due diligence.
Platform Modules

One Platform, Five Modules

Autonomous Scans (Klue Engine)
AI-driven penetration testing end-to-end in an isolated sandbox. Full executive report with attack chain, CWE/CVSS, and remediation guidance.
Application Scans (DAST)
Full web-application testing on any URL. Authenticated flows, SPA-heavy apps, OpenAPI/Postman/GraphQL spec imports, and custom scope.
Autonomous Code Scans
AI-driven source code review with one-click GitHub integration. Catches logic bugs, auth bypasses, and multi-file vulnerabilities that rule-based SAST misses.
Cloud Audit
Multi-cloud posture across AWS, Azure, and GCP. Compliance coverage spanning CIS, PCI-DSS, HIPAA, ISO 27001, SOC 2, NIST, and GDPR.
M365 Assessment
Microsoft 365 and Entra ID audit covering Identity, Exchange, Teams, SharePoint, and Defender. Detects weak MFA, legacy auth, and over-privileged accounts.
NOW LIVE · EARLY ACCESS
Threat Intelligence
Actionable external signals: exposed credentials, brand impersonation, dark-web mentions, and newly disclosed CVEs affecting your stack. Included in all tiers.
Compliance

Frameworks Auto-Mapped in Every Report

Every check is mapped to the relevant controls, so auditors get evidence in the format they expect without your team doing the mapping by hand.

SOC 2
ISO 27001
PCI-DSS
HIPAA
NIST 800-53
GDPR
CIS Benchmarks
OWASP Top 10
Pricing

Simple, Subscription-Based

No consulting fees, per-scope quotes or procurement cycles. Start small and scale as your security programme matures.

Starter
$89
per month
Solo devs, consultants, early-stage startups.
  • Fast AI Engine
  • 20 Cloud Audits/mo
  • 5 Application Scans (DAST)
  • 1 Quick Autonomous Scan (30 min)
  • 1 Focused Autonomous Scan (1 hr)
  • Threat Intelligence (Early Access)
  • Branded PDF Reports
  • Email Support, 48h
  • Standard / Deep Scans
  • Custom Data Residency
Get Starter
Enterprise
Custom
from $2,500/month
Large orgs, regulated industries, high-volume MSSPs.
  • Flagship AI Engine
  • Custom quotas on all modules
  • Standard Scans (3 hr) — Included
  • Deep Scans (6 hr) — Included
  • Selectable Concurrent Scans
  • Resume Scan from Checkpoint
  • Custom-Branded Reports
  • Dedicated Account Manager · 99.9% SLA
  • On-Premise Deployment Option
  • Custom Data Residency
Contact Sales
How It Works

Scope to Report in 5 Steps

01
Define
Point Klue at a target — URL, GitHub repo, cloud account, or M365 tenant. Pick a depth.
02
Isolate
Every scan spins up in its own isolated micro-VM sandbox. No cross-contamination.
03
Execute
Klue runs autonomously. Watch live progress stream into the dashboard.
04
Evidence
Every finding captured with CVSS, screenshots, HTTP traces, attack chain, and remediation.
05
Deliver
A branded executive PDF, ready for auditors, compliance, and leadership.
FAQ

Common Questions

Will my auditor accept a Klue-generated report?+
Yes. Klue produces branded executive PDF reports with methodology, findings, evidence (screenshots, HTTP traces, attack chains), CVSS scoring, and remediation guidance — auto-mapped to SOC 2, ISO 27001, PCI-DSS, HIPAA, NIST 800-53, GDPR, CIS, and OWASP Top 10.
Is Klue actually running the pentest or just AI-assisted reporting?+
Klue is the pentester. It plans the engagement, runs reconnaissance, chains vulnerabilities, executes exploit payloads, and confirms findings autonomously. We use AI as the engagement driver, not the summarizer.
How is Klue different from Nessus, ZAP, or Burp?+
Scanners run predefined checks and report what they find. They cannot reason about application logic, chain vulnerabilities across endpoints, or adapt strategy based on discovery. Klue does all of that — thinking through attack paths the way a human pentester does, at machine speed.
Is it safe to let an AI run aggressive testing against my systems?+
Yes. Every scan executes inside its own isolated micro-VM sandbox that exists only for the duration of that scan. The sandbox has no access to the control plane, no cross-tenant visibility, and is destroyed when the scan completes.
Can I integrate Klue into my CI/CD pipeline?+
API access is available on the Enterprise plan, supporting trigger-on-deploy, build-failing on critical findings, and SIEM/ticketing integration. Starter and Pro users trigger scans manually from the dashboard.
Get Started

Run Your First Autonomous Pentest

See what an hour finds: real exploits, real evidence, real remediation guidance.

Request a DemoTalk to Sales