Defend an agent against hidden-content injection: strip payload-capable invisible Unicode and ANSI, splice out human-invisible HTML, and flag data-exfil URLs in untrusted text before any model sees it.
Full Court Defense CLI — security scanning for AI agents from your terminal
AI agent security & MCP security middleware — prompt injection detection, AI firewall, runtime guardrails & data-loss prevention for LLM tool calls. 8-layer defense against data exfiltration & dangerous commands. Zero dependencies. SDK + OpenClaw plugin.
OpenClaw plugin for ShieldCortex real-time defence scanning and optional memory extraction.
Salus — CLI de AppSec com IA. Code review, análise de vulnerabilidades, hardening defensivo e auditoria AI/LLM. Modo BYOK (Bring Your Own Key).
AI tool security proxy — protect any AI tool server with customizable policies, path/command constraints, rate limiting, and audit logging. Zero code changes required.
Included local runner for roleplay.sh social-engineering tests.
Inline PII, credential, and regulated-data classifier for AI agent I/O. Dual-layer: deterministic regex + optional semantic Guard. Library + CLI.
Input and output guardrails middleware for Vercel AI SDK.
Audit AI agent configs (prompt injection, rogue MCP servers) and vet packages — local, zero-dependency. CLI + MCP server.
Astro integration that exposes your site content via WebMCP for AI agents
Static security scanner for AI CLI and MCP configurations — detects credential leaks, prompt injection, jailbreaks, and supply chain risks
Composable AI safety pipeline framework with industry compliance packs (HIPAA, SOX, GDPR, FedRAMP)
The trust layer for the MCP supply chain - fingerprint MCP servers and detect rug-pulls/drift from your terminal.
Safety firewall SDK for humans and AI agents — scan untrusted text for scams/phishing and prompt-injection before you (or your agent) trust it.
Runtime security for AI agent tool execution. Detects, correlates, and interrupts guarded Lethal Trifecta attack paths.
PM AID Full -- AI agent defense scanner. 74 shipped JS-native modules, including refusal-bait scanner evasion, offline ED25519 licensing, Basic/Full module tiers, and zero-retention local scans.
Autonomous red team tool for MCP servers. Finds exploitable vulnerabilities before attackers do.
Security scanner for AI agent tools — detect tool poisoning, permission abuse, and supply chain attacks in MCP servers and agent skills
Security scanner for MCP server configurations. Finds risky tools, vulnerable packages, and suspicious servers across Claude Desktop, Cursor, VS Code, and more.
Active runtime protection for vibe-coded apps — drops in as Express middleware (web + AI layer), blocks prompt injection, PII leaks, and sensitive paths in real time. By Grovetech AI.
JAKU (呪) — Autonomous Security & Quality Intelligence Agent for vibe-coded apps. XSS, SQLi, prompt injection, QA testing, and attack chain correlation in one command.
Drop-in security guardrails for AI agents. Blocks unauthorized tool calls, exfiltration, prompt injection, and secret leaks — in-process, sub-millisecond, zero network.
Pre-pay risk gate for autonomous payment agents — block prompt-injected destinations, intent mismatches, overcharges and drains before your agent signs. Backed by 402Sentinel; drops into the Claude Agent SDK, x402/AgentKit, or any framework.
Application Trust Runtime for React Native — runtime integrity and AI security engine.