Skip to content
Back to the index

agent-cve-scanners

PyPIInfrastructure

PulseGate's liveness check found it on 1 Oct 2026; it is registered on PyPI and has been in the index since 1 Oct 2026. How this is checked

agent-cve-scanners is an offline, dependency-free CLI package that scans code for patterns associated with 53 CVEs across nine AI-agent frameworks. It also supports MCP tool pinning and collects no telemetry, making it suitable for developers and security teams auditing agent code locally.

Inferred · not functionally tested

Open SourceAGPL-3.0-onlyCLISelf-hosted
Visit PyPI

Overview

6 features

Purpose: Detecting vulnerable AI-agent code patterns and unpinned MCP tools without sending code or telemetry to a service.

Inferred · not functionally tested

Audience: AI security engineers and developers building agent systems

Inferred · not functionally tested

Functions: monitoring

Inferred · not functionally tested

Interfaces: API: unknown · MCP: indicated (inferred, not tested) · CLI: indicated (inferred, not tested) · Self-hosting: indicated (inferred, not tested)

Recorded constraints: pricing: open_source · license: AGPL-3.0-only · platforms: CLI · deployment: cli, self_hosted

Constraint provenance is unknown; confirm requirements with the publisher.

Record sources: pypi.org. These links do not verify the individual claims.

In the AI & LLM security space, agent-cve-scanners takes a focused approach. Inferred · not functionally tested: It focuses on detecting vulnerable AI-agent code patterns and unpinned MCP tools without sending code or telemetry to a service. Inferred · not functionally tested: It is built as an open-source project for AI security engineers and developers building agent systems. Basis unknown · not verified: The project is open source (AGPL-3.0-only). Basis unknown · not verified: It ships for the command line, and it can be self-hosted.

agent-cve-scanners first shipped in 2026. Inferred · not functionally tested: Key capabilities include offline scanning, CVE detection, and static analysis. Basis unknown · not verified: Catalogued interfaces include an MCP server.

Summary written by a language model from the project’s public pages.

Tasks: Inferred · not functionally tested

  • Offline scanning
  • CVE detection
  • Static analysis
  • MCP tool pinning
  • Dependency-free operation
  • No telemetry

Topics: Inferred · not functionally tested

Tags
cve-scanningai-agent-securitymcp-tool-pinningstatic-analysis

JSON profile · Text profile · Access guide

Built with & integrations

Connectors
MCP
Runs on
CLISelf-hosted

Trust & compliance

License
AGPL-3.0-only
Public signals
HTTPSOpen SourceFree tier

Indexing history

2

What PulseGate has recorded for this listing

  1. Indexed6 Oct · 02:22 UTC
    agent-cve-scanners seen via PyPI Fresh Feed
    Source: PyPI Fresh Feed · Open
  2. Indexed1 Oct · 22:19 UTC
    agent-cve-scanners seen via PyPI Bulk Enumerator
    Source: PyPI Bulk Enumerator · Open

Frequently asked questions about agent-cve-scanners

What does agent-cve-scanners do?
Inferred · not functionally tested: Agent-cve-scanners focuses on detecting vulnerable AI-agent code patterns and unpinned MCP tools without sending code or telemetry to a service. It is catalogued under AI & LLM security on PulseGate.
Who should use agent-cve-scanners?
Inferred · not functionally tested: agent-cve-scanners is an open-source project built for AI security engineers and developers building agent systems.
Does agent-cve-scanners have a free plan?
Basis unknown · not verified: Yes — agent-cve-scanners is open source under the AGPL-3.0-only license and free to use.
What platforms does agent-cve-scanners run on?
Basis unknown · not verified: agent-cve-scanners runs on the command line. It can also be self-hosted.
Is agent-cve-scanners still active?
PulseGate's liveness check found it on 1 Oct 2026.
What projects are similar to agent-cve-scanners?
Similar projects tracked by PulseGate include agentsec-cli, Agent Scan, and agentaudit-scanner.agentsec-cliAgent Scanagentaudit-scanner
How long has agent-cve-scanners been around?
agent-cve-scanners first shipped in 2026.
Is agent-cve-scanners open source?
Basis unknown · not verified: Yes — agent-cve-scanners is open source under the AGPL-3.0-only license.

Similar projects

Closest matches by what these projects do