Tool · curated 30 Aug 2026
GitHub - snyk/agent-scan: Security scanner for AI agents, MCP servers and agent skills.
First reported github.com
Coverage timeline
Single-source analysis — first reported, latest, and curated coincide.
Why it matters
Snyk's agent-scan gives defenders a runnable way to inventory and audit MCP servers, AI agents, and agent skills for the tool-poisoning, prompt-injection, and supply-chain risks emerging across the agentic ecosystem.
Snyk's agent-scan is an open-source security scanner (also distributed as the PyPI package snyk-agent-scan) that inspects AI agents, MCP servers, and agent skills for security issues. The GitHub repository shows active development, MCP-focused capabilities including a guard install for discovered servers, and references to MCP threats such as tool-poisoning and prompt injection.