Prompts and context
Prompt injection, indirect instructions, system-prompt leakage and unsafe context boundaries.
AI security consulting for LLMs, RAG and agents: Bettag Systems reviews your architecture, tests attack paths and helps implement fixes. Franz Bettag works directly with your engineering and operations teams in the Nuremberg region and across Germany. The goal is verifiable controls and workflows your team can maintain.
Prompt injection, indirect instructions, system-prompt leakage and unsafe context boundaries.
Poisoning, manipulated sources, authorization failures, data exfiltration and missing provenance.
Over-privileged tools, unsafe action chains, missing approvals and uncontrolled side effects.
Evals, audit logs, monitoring, cost controls, incident response and secure rollouts.
Map architecture, data flows, models, retrieval, tools, permissions and human approval points.
Build a threat model and reproducible tests for injection, exfiltration, poisoning and tool misuse.
Implement controls or hand over a prioritized backlog with clear ownership.
Anchor regression evals, logging, alerts, approvals and runbooks in production.
Concrete assets, trust boundaries, attacker goals and traceable attack paths.
Reproducible findings with risk, evidence and actionable remediation.
Prioritized architecture and implementation work, including evals and operational controls.
Franz Bettag’s Anthropic course certificates complement his hands-on work on AI systems. The certificate page shows the original documents; the bug bounty case study explains model roles, tools and verification in his own system.
An LLM security audit examines your AI application, its data access and tools. An external penetration test examines the authorized attack surface of your websites, APIs and services. Platform engineering provides the operational foundation for both. We agree scope and implementation with the teams responsible.