Skip to content

Quickstart

Mohammed Danish Amber edited this page Oct 5, 2026 · 1 revision

Quickstart

Fastest canary-proven run — no LLM, no API key — against the bundled fixture.

The fixture is intentionally vulnerable. Run it on localhost only.

1. Start the fixture (from a repo checkout)

docker compose -f fixture/docker-compose.yml up -d

The HTTP agent binds 127.0.0.1:8000, the MCP server 127.0.0.1:8001. If you get a Docker permission error, your shell has not picked up the docker group — run newgrp docker or prefix with sudo.

2. Run in seed mode (no LLM)

cd engine
uv run aphasia run --mode seed

This drives the attacker from the curated Seed Payload Library. Against the fixture it proves all 11 OWASP LLM Top 10 categories deterministically in seconds. Exit code 1 means at least one attack was proven; 2 means a target/provider error.

3. Open the report

runs/<run-id>/report.html

See The Report for how to read it.

Add a real LLM attacker

Any model via litellm — the --model string selects the provider (see LLM Providers):

aphasia run --model gpt-4o-mini                                   # OpenAI
aphasia run --model anthropic/claude-3-5-haiku                    # Anthropic
aphasia run --model ollama/llama3.2:1b --api-base http://host:11434   # local Ollama

--mode hybrid (default) tries the seeds first, then the LLM adapts. See Attacker Modes.

Point at your own agent

aphasia run --target http://your-agent/chat --model gpt-4o-mini

See Targets for the HTTP and MCP contracts.

Clone this wiki locally