AI Pentest
AI selects only from a machine-controlled catalog of nine non-destructive actions routed to existing scanners. It never receives a shell or root access.
AI Pentest is not released yet, and no plan turns it on early. The execution seam remains closed until real authorized engagements prove retained observations, evidence-backed customer-visible findings, API scope, attack-path production, private-runner isolation, and emergency stop behavior.
AI chooses only from nine non-destructive typed actions; it cannot invent a tenth.
There is no field for a shell, container, or root access.
Every run is scoped to authorized hosts and budgets it may narrow but never widen.
Actions route to the same deterministic scanners already used by the platform.
AI alone may create a hypothesis, but cannot create a confirmed finding.
Confirmation requires reproduction across two distinct deterministic tool runs.