PerfAI
Agentic AppSec platform that probes AI-generated apps for logic and access-control flaws and opens auto-fix pull requests.
What it does
Perfai Security is an autonomous, agent-driven application security tool built for apps generated with AI coding tools like Cursor, Bolt, and Replit. Its agents map an app's flows, roles, and data paths, then run targeted exploit attempts across 70+ threat categories such as broken access control, SSRF, and prompt injection. Once a flaw is confirmed exploitable it automatically files a pull request or pushes a fix into the developer's coding tool.
Core features
Automated mapping of app flows, roles, and auth logic
70+ AI-native and OWASP threat category testing
Exploit verification before flagging an issue
Auto-generated pull requests with fixes
Direct fix push into Cursor, Claude Code, Copilot, Replit, or Windsurf
Continuous 24/7 testing instead of scheduled scans
Best for
→Securing apps built rapidly with AI coding assistants
→Catching business-logic and access-control bugs before launch
→Reducing manual pentest cycles for fast-shipping teams
→Ongoing security monitoring for live AI-generated applications
Pricing
Free
Pro
$99/month
Growth
$499/month