Questions

Before you request a test.

How does Fisher fit into our red-teaming or penetration-testing process?
Fisher tests configured AI agents through adaptive, multi-turn interactions. Its findings, replay results, and remediation guidance can support your team's broader security-testing process. We agree the agent, workflow, boundaries, and permitted actions before testing begins.
Are you testing our agent or just its underlying model?
Fisher can assess the configured agent and workflow you want to deploy. The evidence available depends on how it connects. With chat-only access, Fisher can assess requests and responses, but cannot verify internal tool actions that the interface does not expose.
How does model red teaming differ from agent red teaming?
Model red teaming examines a model and its safeguards under agreed requirements and attack conditions. Adversarial agent red teaming with Fisher tests a configured workflow and the actions visible through the agreed connection. Model results do not replace testing the deployed agent.
What does agentic swarm defense address?
It addresses risks from your own agents acting together, including unauthorized collaboration through shared files or state that later runs can reuse. The work considers task authority, containment, and recovery while preserving legitimate collaboration. What we assess and which controls are involved depend on the system and agreed engagement.
How do we book a demo?
Use Book a Demo on any page and tell us what you’re building and what you need to understand. Our team will contact you to arrange it. A demo request does not start any testing.
What access does Fisher need to start?
We agree the target environment, permitted actions, required access, and evidence handling before testing. Production access, source code, and live customer data are not required to start. The preferred approach is your staging or test environment.
What does a clean assessment mean?
It is evidence about the tested configuration, boundaries, and attack paths. It does not show the absence of every failure, and a score is not an incident probability. The deployment decision stays with your team.
Does Fisher fix the agent?
Findings include remediation guidance for your team to evaluate. Guidance may address authorization gates, tool-call validation, prompt or policy changes, logging, and regression scenarios. Where scoped, remediation verification re-attacks a proposed fix on an isolated replica. Fisher does not change your live system.
Are findings mapped to frameworks?
Findings can be mapped to the standards and frameworks your teams use, by agreement. Mapping supports internal analysis; it is not certification, legal advice, or a determination of compliance.
  • OWASP Top 10 for LLM Apps
  • OWASP Top 10 for Agentic Apps
  • NIST AI RMF
  • MITRE ATLAS
  • EU AI Act
  • ISO/IEC 42001
  • GDPR
  • HIPAA
  • GINA
  • FCC / CPNI
What happens after the first assessment?
Fisher continues on a monthly usage-based plan. Run a new scan after model updates and retest after other material changes. Pricing is available on request.
How do we arrange repeat testing?
We agree how repeat assessments will be initiated during onboarding. Run a new Fisher scan after every model update.
Is mace AI related to Moltbot, OpenClaw, or Moltbook?
No. mace AI is an independent enterprise AI-assurance company and is not affiliated with Moltbot, OpenClaw, or Moltbook.