OpenAI announced plans to acquire AI testing startup Promptfoo, in a move aimed at strengthening security controls for AI agents as enterprises move to deploy autonomous systems in business workflows. Promptfoo’s tools allow developers to test large language model (LLM) applications against hostile prompts, including prompt injection and jailbreak attempts, and assess whether the models follow security and trustworthiness guidelines.
See also: OpenAI's robotics chief resigns over Pentagon deal

In its statement, OpenAI said that Promptfoo's technology will be integrated into OpenAI Frontier, its platform for developing and operating AI collaborators. OpenAI added that Promptfoo's team has developed tools used by more than 25% of Fortune 500 companies, including an open-source command-line interface and a library designed for evaluating and detecting large language models.
OpenAI plans to continue developing the open‑source project while expanding capabilities for enterprises on the Frontier platform. Analysts say the acquisition reflects a broader inflection point in AI agent development, with businesses shifting their focus from raw model capabilities to safe and controlled AI systems. Industry research mirrors these concerns.
See also: OpenAI Codex Security: Identified 10,561 serious issues in 1.2 million commits

IDC’s Asia Pacific Security Study 2025 found that organizations cite AI-enhanced phishing and impersonation attacks, such as deepfakes and voice cloning, AI-powered ransomware, and LLM prompt injection or model manipulation among their top concerns. Additional risks include AI-powered malware creation, AI-driven business logic attacks and disinformation campaigns, and model poisoning during training, said Sakshi Grover, senior research director for cybersecurity services at IDC Asia Pacific.
Companies moving generative AI projects from pilot stages to production are increasingly forced to consider assessment and validation tools as a core part of their AI development pipelines. Many organizations are now adopting AI testing practices that mirror traditional application security processes, according to Keith Prabhu, founder and CEO of Confidis.
See also: OpenAI: ChatGPT Upgrade with GPT-5.4 Thinking

System integrators and managed security service providers are also increasingly incorporating AI testing tools into their service offerings, especially as organizations begin to develop AI‑assisted security operation centers.
