5 minutes
Stop immediate exposure
- Run the local AgentSec check.
- Review hooks, skills, rules, and MCP configuration.
- Remove unpinned or unexplained dependencies.
Defensive baseline
Reduce immediate risk, strengthen a workstation, and establish repeatable controls for a development team.
Threat DB v2.29.0Updated September 12, 2026
5 minutes for immediate exposure, 30 minutes for workstation controls, and Team controls for durable ownership.
Start with the shortest path you can finish now, then continue without repeating the same checks.
5 minutes
30 minutes
Team controls
The page does not inspect your repository. Install AgentSec, run it in the repository, and review its bounded findings.
agentsec scan /path/to/repository --format json --redact A clean result is not a security guarantee. The scanner does not inspect every host-level, historical, or runtime surface.
Choose by coverage and limits, not by logo count. Each record keeps its stated capabilities and limitations.
cli
Invariant / Snyk
mcp-server
rfounds
cli
agentskills.io
cli
NVIDIA
mcp-server + dashboard
mcp-fortress
mcp-server
SafeDep
clawhub-skill
Koi Security
cli
community
cli
community (open-source)
cloud-saas
Enkrypt AI
cli
Cisco
cloud-saas
NeuralTrust
claude-code-skill
Verify (mcpmarket.com)
cloud-saas
mcpscan.ai
cli
GitHub Security Lab
cloud-saas
OpenAI
runtime
Jozu
ide-extension
Cisco
cli
George Gerchow / Bedrock Data (RSAC 2026)
cli + saas
AquilaX
mcp-server
Mend.io
cli + runtime
Cisco
cli
opena2a-org (community)
openclaw-plugin
Silverfort (open-source)
cloud-saas
ESET
cli + cloud
Permiso
mcp-server
Semgrep
runtime-protection
AccuKnox
skill-suite
prompt-security
cli
Snyk
cloud-saas
Straiker
cli
garagon (open-source)
browser
SkillRisk (community)
cli
golf-mcp (open-source)
cloud-saas
Microsoft
cli
NVIDIA
research-framework
Academic (arXiv 2605.21392)
cli
kurtpayne (community, open-source)
cli
Tencent Zhuque Lab
cli
open-source (community)
sandbox
research / community
sandbox
Zenity Labs
runtime EDR for agents
Perplexity AI
runtime guardrail
Tenet Security
Use a quick check for known configuration risks, then a broader audit when you need permissions, hooks, secrets, and supply-chain coverage.
/security-check /security-audit Loading bash sandboxβ¦
Progress is stored locally when browser storage is available. The checklist remains usable when storage is blocked.
0 of 9 complete