agent-cve-scanners
PulseGate's liveness check found it on 1 Oct 2026; it is registered on PyPI and has been in the index since 1 Oct 2026. How this is checked
agent-cve-scanners is an offline, dependency-free CLI package that scans code for patterns associated with 53 CVEs across nine AI-agent frameworks. It also supports MCP tool pinning and collects no telemetry, making it suitable for developers and security teams auditing agent code locally.
Inferred · not functionally tested
Overview
6 featuresPurpose: Detecting vulnerable AI-agent code patterns and unpinned MCP tools without sending code or telemetry to a service.
Inferred · not functionally tested
Audience: AI security engineers and developers building agent systems
Inferred · not functionally tested
Functions: monitoring
Inferred · not functionally tested
Interfaces: API: unknown · MCP: indicated (inferred, not tested) · CLI: indicated (inferred, not tested) · Self-hosting: indicated (inferred, not tested)
Recorded constraints: pricing: open_source · license: AGPL-3.0-only · platforms: CLI · deployment: cli, self_hosted
Constraint provenance is unknown; confirm requirements with the publisher.
Record sources: pypi.org. These links do not verify the individual claims.
In the AI & LLM security space, agent-cve-scanners takes a focused approach. Inferred · not functionally tested: It focuses on detecting vulnerable AI-agent code patterns and unpinned MCP tools without sending code or telemetry to a service. Inferred · not functionally tested: It is built as an open-source project for AI security engineers and developers building agent systems. Basis unknown · not verified: The project is open source (AGPL-3.0-only). Basis unknown · not verified: It ships for the command line, and it can be self-hosted.
agent-cve-scanners first shipped in 2026. Inferred · not functionally tested: Key capabilities include offline scanning, CVE detection, and static analysis. Basis unknown · not verified: Catalogued interfaces include an MCP server.
Summary written by a language model from the project’s public pages.
Tasks: Inferred · not functionally tested
- Offline scanning
- CVE detection
- Static analysis
- MCP tool pinning
- Dependency-free operation
- No telemetry
Topics: Inferred · not functionally tested
Built with & integrations
Trust & compliance
Indexing history
2What PulseGate has recorded for this listing
- Indexed1 Oct · 22:19 UTCagent-cve-scanners seen via PyPI Bulk EnumeratorSource: PyPI Bulk Enumerator · Open
Frequently asked questions about agent-cve-scanners
- What does agent-cve-scanners do?
- Inferred · not functionally tested: Agent-cve-scanners focuses on detecting vulnerable AI-agent code patterns and unpinned MCP tools without sending code or telemetry to a service. It is catalogued under AI & LLM security on PulseGate.
- Who should use agent-cve-scanners?
- Inferred · not functionally tested: agent-cve-scanners is an open-source project built for AI security engineers and developers building agent systems.
- Does agent-cve-scanners have a free plan?
- Basis unknown · not verified: Yes — agent-cve-scanners is open source under the AGPL-3.0-only license and free to use.
- What platforms does agent-cve-scanners run on?
- Basis unknown · not verified: agent-cve-scanners runs on the command line. It can also be self-hosted.
- Is agent-cve-scanners still active?
- PulseGate's liveness check found it on 1 Oct 2026.
- What projects are similar to agent-cve-scanners?
- Similar projects tracked by PulseGate include agentsec-cli, Agent Scan, and agentaudit-scanner.agentsec-cliAgent Scanagentaudit-scanner
- How long has agent-cve-scanners been around?
- agent-cve-scanners first shipped in 2026.
- Is agent-cve-scanners open source?
- Basis unknown · not verified: Yes — agent-cve-scanners is open source under the AGPL-3.0-only license.
Similar projects
Closest matches by what these projects do