ScrumAgent — security grade SAFE, quality 68/100

Security audit verdict: SAFE · quality 68/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by Shikenso-Analytics · Agent Tool · ★ 51

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is ScrumAgent safe to install? View the security audit →

About ScrumAgent

Scrum Agent Table of Contents Introduction Features Architecture Installation and Setup Running Locally Environment Variables MCP Server Configuration Wiki-based Skills Usage Examples Testing Tracing with LangSmith Roadmap Contact Introduction Scrum Agent is an open-source, AI-

Quick Facts

Stars51
Forks13
LanguagePython
CategoryAgent Tool
LicenseAGPL-3.0
Quality Score67.730412435071/100
Open Issues2
Last Updated2026-02-21
Created2025-02-06
Platformspython
Est. Tokens~98k

More Agent Tool Tools

Explore other popular agent tool tools:

View all Agent Tool tools →

Popular Python Agent Tools

Frequently Asked Questions

What is ScrumAgent?

ScrumAgent is The Discord Scrum Master is an open-source AI-powered supervisor agent designed to facilitate agile project management within Discord communities. Acting as a virtual Scrum Master, this agent integrat. It is categorized as a Agent Tool with 51 GitHub stars.

What programming language is ScrumAgent written in?

ScrumAgent is primarily written in Python.

How do I install or use ScrumAgent?

You can find installation instructions and usage details in the ScrumAgent GitHub repository at github.com/Shikenso-Analytics/ScrumAgent. The project has 51 stars and 13 forks, indicating an active community.

What license does ScrumAgent use?

ScrumAgent is released under the AGPL-3.0 license, making it free to use and modify according to the license terms.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse Agent Tool tools