Sentinel-Hub is the security testing hub inside Agentic Testari (not the domain).
Agentic Testari is the platform. Sentinel-Hub is its security testing hub — agents built for attack and security testing. Attackers already use agentic browsers; we test with the same class of tool under permission. Starts with the public façade; deeper work only when you authorize it — development / staging only (never production).
The threat model changed. Adversaries no longer rely only on a person with Chrome — or scripts that merely drive a human browser. They run agentic browsers: automated, scaled, and far more powerful.
A human session is one pair of hands. An agentic browser reconnoiters, chains steps, and presses public surfaces and login edges at machine speed.
Classic automation still helps attackers. Agentic browsers go further — more autonomy, more paths, more pressure on the exact façade your customers and partners see.
Sentinel-Hub is built for this shift: authorized testing of what faces the internet, and deeper work only under RoE — with agent-class tooling, not checkbox theater.
We test with ParviSight — our agentic browser, the same class of tool attackers already use — under scope, permission, evidence, and ranked findings you can take to the board.
We're ahead: Sentinel-Hub finds vulnerabilities with ParviSight — an agentic browser of the same class hackers already use — under RoE, with permission.
Public risk is only the front door. If we find cracks there, real attackers go next to login portals, customer apps, and internal systems. Sentinel-Hub — Agentic Testari's security testing hub with attack and security agents — covers both layers, with hard rules about where deep / offensive work is allowed.
Authorized, not cowboy. We may demo public L1–L3 when selling. When you buy, you sign a service contract that includes RoE — even if we already ran a public test. Offensive modes only when you request and authorize them in that contract.
Baseline on what faces the internet. Optional deep work on login, app flows, and intranet-style surfaces that matter once a user is in.
Offensive testing is never self-started. It happens only when the client asks for it, with written OK, on the environment they designate — not as cold public outreach.
Start shallow. Go deeper only when you say so — and only where it is safe.
What you saw in early public assessments is the baseline — the necessary first pass. Sentinel-Hub (inside Agentic Testari) is built so the story does not stop at the marketing site.
The “preliminary” layer: everything facing the open internet without a customer login. Fast, non-destructive, and enough to show real brand / edge risk.
If the public layer is weak, attackers do not stop. Deep work asks: what happens on the login, the company app, and intranet-style systems your users actually use?
Public pages protect reputation. Login and product systems protect money, data, and trust. Sentinel shows what is visible from the street and — when you authorize it — how hard a serious attacker could push on a safe copy of your real system (dev/staging), so you fix before production pays the price.
Baseline = what any stranger can see. Deep = what we can prove on your dev environment, with your written OK — including offensive depth if you want the full story.
RoE = Rules of Engagement inside a signed service contract. We may run L1–L3 public assessments to show value when selling. When you purchase — even a light L1/L2/L3, and even if a public test was already done — you sign a Service Agreement that always includes RoE (Schedule A). That protects both sides for delivery, payment, and follow-on work. The deeper the purchase (especially Offensive), the more detailed the RoE. Offensive techniques only if the signed contract authorizes them before those methods run.
L1–L3 = public pages only, non-offensive (what we can run to show value and sell). Offensive techniques are listed separately — they require your request, a signed service contract that includes RoE, on the environment you choose.
So you know this is not a faceless scan vendor — it is built and led by someone who has spent a career finding what breaks in systems that cannot afford to break.
Founder · FriendlyAI Oy · Agentic Testari (Sentinel-Hub) · Finland
15+ years in enterprise QA and software testing — banking, insurance, and API-heavy platforms. ISTQB-minded craft: methodical, evidence-based, no theater.
Career path includes long enterprise testing work in Finland (including banking environments such as Handelsbanken / S-Pankki–class systems via Samlink, and API testing for insurance clients via Tieto/Tietoevry). Tools of the trade: exploratory & manual depth, REST/SOAP, Postman, Robot Framework + Python — plus agentic AI to scale what a senior tester already knows how to see.
Sentinel-Hub is the security testing hub of Agentic Testari — attack and security agents that turn that experience into product: authorized assessments, plain-language severity, and a fix path you can take to the board.
Finnish company · EU data mindset · Built by a practitioner, not a pure marketing shop.
Tell us the public domain, whether a deep phase on dev/staging is in play, and when you need the report. We never run offensive/destructive work on production.
Contact (anti-spam inbox): dev@friendlyai.fi · Use case