About INJECT.md
INJECT.md is a prompt-injection audit for applications that let a model read untrusted content such as web pages, emails, PDFs and tool outputs. Its battery has 46 payloads across five classes: direct override, obfuscation and encoding, indirect injection via ingested content, exfiltration side-channels and agentic tool abuse, and each payload cites the technique behind it.
The scored report gives a resistance score, a per-class breakdown and a verdict for every payload as self-contained HTML plus JSON for pipelines, and results that a string match cannot settle are marked as needing review. The site argues that system prompts cannot stop injection and that structural measures such as quarantining untrusted content hold up, and it provides a sandboxed live demo where you can try to leak a throwaway secret.
An audit of your endpoint is priced at 69 dollars, and 8 of the payloads are free to run. It is aimed at teams shipping LLM features that read external content and want a measurable baseline for how well their architecture resists injection.
Key features
- 46 prompt injection payloads in five classes
- Scored resistance report with per-class breakdown
- HTML report plus JSON for pipelines
- Needs-review flags for unclear results
- Free subset of 8 payloads
- Sandboxed attack demonstration
Good fit for
- Testing an AI assistant that reads email or web pages
- Giving a security lead a scored injection report
INJECT.md: questions and answers
- What is INJECT.md used for?
- INJECT.md audits LLM apps for prompt injection by running a battery of 46 payloads across five attack classes and returning a scored report. It is a good fit for testing an AI assistant that reads email or web pages and giving a security lead a scored injection report.
- Is INJECT.md free?
- Yes. INJECT.md has a free plan, and paid plans start at $39 per month.
- Is INJECT.md open source?
- No. INJECT.md is proprietary (closed-source) software and can't be self-hosted. In the Security category, open-source options include ModSecurity, DefectDojo and CISO Assistant.
- What are some alternatives to INJECT.md?
- Other SaaS products in the Security category include Agnostics, aipwn and 42Crunch.
Open-source alternatives to INJECT.md
See all
ModSecurity
Security
ModSecurity is an open source, cross platform web application firewall (WAF) engine for Ap
Apache-2.0vs Cloudflare★ 9.8k
DefectDojo
Security
Open-Source Unified Vulnerability Management, DevSecOps & ASPM
BSD-3-Clausevs Tenable★ 5k
CISO Assistant
Security
CISO Assistant is a one-stop-shop GRC platform for Risk Management, AppSec, Compliance & A
OSSvs Vanta★ 4.5k
Dependency-Track
Security
Dependency-Track is an intelligent Component Analysis platform that allows organizations t
Apache-2.0vs Snyk★ 4.3k
OWASP CRS
Security
OWASP CRS (Official Repository)
Apache-2.0★ 3.3k
acme.sh
Security
A pure Unix shell script ACME client for SSL / TLS certificate automation
GPL-3.0vs DigiCert★ 48k
SaaS alternatives to INJECT.md
See all
Agnostics
Security
AI red-teaming that finds prompt injections, jailbreaks and data leaks in LLM-powered apps
SaaS
aipwn
Security
Agent Security API that evaluates each AI agent step to stop injection, privilege abuse and data leaks
SaaS
42Crunch
Security
API security platform that audits OpenAPI definitions and protects APIs at runtime
SaaS
AttackerView
Security
Security auditor that shows what an attacker can see on your website
SaaSAudn.AI
Security
Automated external black-box penetration testing for AI agents, endpoints and production systems
SaaS
Caviard
Security
Chrome extension that redacts personal information locally before prompts reach ChatGPT and other AI services
SaaS
