agent-security-scanner-mcp — security grade SAFE, quality 73/100

Security audit verdict: SAFE · quality 73/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by sinewaveai · MCP Server · ★ 121

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is agent-security-scanner-mcp safe to install? View the security audit →

About agent-security-scanner-mcp

agent-security-scanner-mcp Security scanner for AI coding agents and autonomous assistants Scans code for vulnerabilities, detects hallucinated packages, blocks prompt injection, and provides LLM-powered semantic code review — via MCP (Claude Code, Cursor, Windsurf, Cline) or CLI (OpenClaw, CI/CD). 🎯 Two Versions Available 🔥 ProofLayer (Lightweight) - NEW! Ultra-fast, zero-Python security scanner — 81.5KB package, 4-second install [](https://www.npmjs.com/package/@proofl

agent-securityai-agent-securityai-securityclaude-codecodexcursorhallucination-detectionllm-securitymcpmcp-security

Quick Facts

Stars121
Forks11
LanguageJavaScript
CategoryMCP Server
LicenseMIT
Quality Score73.1379037846838/100
Open Issues14
Last Updated2026-09-02
Created2026-02-04
Platformsclaude-code, codex, mcp, node
Est. Tokens~25k

agent-security-scanner-mcp alternative? Top 6 similar tools

Looking for a agent-security-scanner-mcp alternative? If you're comparing agent-security-scanner-mcp with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • shellward by jnMetaCode · ⭐ 139

    AI 应用合规网关 · 一行命令体检 AI 项目的「数据出境 / 硬编码密钥 / 个人信息暴露」(网安法·PIPL·等保2.0·数据出境·AI标识),并给出境内模型替代建议;可作运行时防护拦截注入与数据外泄 · 中文优先

  • node9-proxy by node9-ai · ⭐ 216

    Access control for AI agents. Set what Claude Code, Codex, Gemini, Cursor and any MCP server are allowed to do

  • agentseal by AgentSeal · ⭐ 156

    Security toolkit for AI agents. Scan your machine for dangerous skills and MCP configs, monitor for supply cha

  • rampart by peg · ⭐ 83

    Open-source firewall for AI agents. Policy engine that audits and controls what OpenClaw, Claude Code, Cursor,

  • agent-audit by HeadyZhang · ⭐ 229

    Static security scanner for LLM agents — prompt injection, MCP config auditing, taint analysis. 51 rules mappe

  • repo-forensics by alexgreensh · ⭐ 181

    Offline security scanner for AI-agent repos, skills, plugins, and MCP servers.

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular JavaScript Agent Tools

Frequently Asked Questions

What is agent-security-scanner-mcp?

agent-security-scanner-mcp is Security scanner MCP server for AI coding agents. Prompt injection firewall, package hallucination detection (4.3M+ packages), 1000+ vulnerability rules with AST & taint analysis, auto-fix.. It is categorized as a MCP Server with 121 GitHub stars.

What programming language is agent-security-scanner-mcp written in?

agent-security-scanner-mcp is primarily written in JavaScript. It covers topics such as agent-security, ai-agent-security, ai-security.

How do I install or use agent-security-scanner-mcp?

You can find installation instructions and usage details in the agent-security-scanner-mcp GitHub repository at github.com/sinewaveai/agent-security-scanner-mcp. The project has 121 stars and 11 forks, indicating an active community.

What license does agent-security-scanner-mcp use?

agent-security-scanner-mcp is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to agent-security-scanner-mcp?

The top alternatives to agent-security-scanner-mcp on Agent Skills Hub include shellward, node9-proxy, agentseal. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools