Summary
Agent-scan is a static security scanner designed for the AI agent ecosystem, including MCP servers, Agent Skills, and tool code. It detects prompt injection, hidden instructions, data exfiltration, and supply-chain risks, operating fully offline with zero dependencies.
AI-assisted summary based on the listed source.
What happened
🛡️ npm audit for the AI agent ecosystem. Static security scanner for MCP servers, Agent Skills, AGENTS.md and tool code — detects prompt injection, hidden instructions, data exfiltration and supply-chain risks. Zero dependencies, fully offline, SARIF output. Stars: 0. Updated repository signal.
Why it matters
As AI agents become more prevalent, ensuring their security against vulnerabilities like prompt injection and data leaks is critical. Agent-scan provides a specialized tool to identify these risks early in development and deployment.
Signal Intelligence
Signal Strength 95%
Technical label SOURCE-BACKED
Public Interest 34
Category SECURITY
Reader Depth TECHNICAL
Signal Strength reflects source quality, relevance, freshness and evidence. Public Interest helps organize discovery; it is not proof of truth.
Public Interest components
Recognizable Entity Score 0
Practical Impact Score 44
Novelty Interest Score 70
Consequence Score 46
Curiosity Score 16
Shareability Score 29