agent-bom is an open-source security scanner and self-hosted control plane for AI and MCP infrastructure. It helps engineers and security teams detect vulnerabilities, manage supply chain risks, and remediate issues in AI agent deployments.
In the Security & compliance platforms space, agent-bom takes a focused approach. It focuses on scanning and managing security for AI and MCP infrastructure with open, self-hosted tools. agent-bom is an open-source project aimed at AI infrastructure engineers and security teams. The project is open source (Apache-2.0). It ships for the command line, and it can be self-hosted.
Behind agent-bom is msaad00, and it first shipped in 2026. Development happens publicly on GitHub with 23 stars and 1.6k commits in the last 90 days. Among its 5 catalogued features are security scanning, self-hosted control plane, and AI/MCP infrastructure support. It exposes integrations via an MCP server.
Summary written by a language model from the project’s public pages.
What PulseGate has recorded for this listing
Closest matches by what these projects do