agent-scanner MCP Server
go-authgate/agent-scanner
Security scanner for AI agents, MCP servers, and agent skills
claude mcp add agentrank -- npx -y agentrank-mcp-server Overview
go-authgate/agent-scanner is a Go MCP server. Security scanner for AI agents, MCP servers, and agent skills Topics: ai-agent, ai-security, claude-desktop, cli, cursor, golang, mcp, mcp-server, model-context-protocol, prompt-injection, security, security-scanner, tool-poisoning, vscode.
Ranked #124 out of 124 indexed tools.
Actively maintained with commits in the last week.
Ecosystem
Score Breakdown
1 stars → early stage
Last commit today → actively maintained
0/2 issues closed → many open issues
1 contributor → solo project
No dependents → no downstream usage
Weights: Freshness 25% · Issue Health 25% · Dependents 25% · Stars 15% · Contributors 10% · How we score →
How to Improve
Matched Queries
From the README
# Agent Scanner Security scanner for AI agents, MCP servers, and agent skills. Discovers installed AI agent clients, connects to their configured MCP servers, and detects prompt injections, tool poisoning, toxic flows, and other security threats. Inspired by [snyk/agent-scan](https://github.com/snyk/agent-scan), reimplemented in Go as a single static binary. ## Features - **Auto-discovery** of 11+ AI agent clients (Claude Desktop, Claude Code, Cursor, VS Code, Windsurf, Gemini CLI, Kiro, Codex, etc.) - **MCP protocol client** supporting stdio, SSE, and streamable HTTP transports - **13 security rules** detecting prompt injections, tool shadowing, hardcoded secrets, malicious code, toxic flows, and more - **Skill scanning** for agent skill directories containing `SKILL.md` - **Direct scanning** from package managers (`npm:`, `pypi:`, `oci://`) and URLs (`sse://`, `streamable-http://`) - **Cross-platform** support (macOS, Linux, Windows) - **Single binary** with zero runtime dependenRead full README on GitHub →
Get the weekly AgentRank digest
Top movers, new tools, ecosystem insights — straight to your inbox.