transilienceai / whitney
PublicOpen-source static AI security scanner — prompt injection across 15 source types, broken LLM-as-judge detection, AI dependency SBOM. Beats Semgrep AI ruleset 2x on a labelled corpus.
Whitney is an open-source security scanner that identifies prompt injection vulnerabilities in Python codebases and generates inventories of AI dependencies.
How It Works
You hear about Whitney, a friendly tool that checks your AI project for hidden security risks like sneaky instructions that could trick the AI.
You bring Whitney onto your computer with a simple, quick step so it's ready to help.
You select the folder containing your AI app's code, and Whitney gets to work examining it.
Whitney quickly shows a clear list of potential dangers, like risky ways user input reaches the AI, with easy explanations and fixes.
You look at the highlighted issues, understand why they matter, and make your app stronger.
Optionally, Whitney lists all the AI parts your project uses, spotting any outdated or risky ones.
With the risks fixed, your project feels safe and reliable, giving you peace of mind to build confidently.
Star Growth
Repurpose is a Pro feature
Generate ready-to-use prompts for X threads, LinkedIn posts, blog posts, YouTube scripts, and more -- with full repo context baked in.
Unlock RepurposeSimilar repos coming soon.