Skip to content
Back to the index

agentpipe-scan

PyPIInfrastructure

PulseGate's liveness check found it on 3 Oct 2026; it is registered on PyPI and has been in the index since 31 Aug 2026. How this is checked

agentpipe-scan is an open-source security scanner for identifying CI agents that consume untrusted GitHub events while holding secrets. It targets prompt-injection and supply-chain risks in agent-enabled CI workflows.

Inferred · not functionally tested

Open SourceMITCLISelf-hosted
Visit PyPI

Overview

5 features

Purpose: Detecting CI agents that process untrusted GitHub events and could expose secrets.

Inferred · not functionally tested

Audience: security engineers and DevOps developers

Inferred · not functionally tested

Functions: monitoring

Inferred · not functionally tested

Interfaces: API: unknown · MCP: unknown · CLI: indicated (inferred, not tested) · Self-hosting: indicated (inferred, not tested)

Recorded constraints: pricing: open_source · license: MIT · platforms: CLI · deployment: cli, self_hosted

Constraint provenance is unknown; confirm requirements with the publisher.

Record sources: pypi.org. These links do not verify the individual claims.

In the AI & LLM security space, agentpipe-scan takes a focused approach. Inferred · not functionally tested: It focuses on detecting CI agents that process untrusted GitHub events and could expose secrets. Inferred · not functionally tested: It is built as an open-source project for security engineers and DevOps developers. Basis unknown · not verified: agentpipe-scan is open source under the MIT license. Basis unknown · not verified: agentpipe-scan is available on the command line, and it can be self-hosted.

agentpipe-scan first shipped in 2026. Inferred · not functionally tested: Among its 5 catalogued features are CI agent scanning, gitHub event analysis, and secret exposure detection.

Summary written by a language model from the project’s public pages.

Tasks: Inferred · not functionally tested

  • CI agent scanning
  • GitHub event analysis
  • Secret exposure detection
  • Prompt injection checks
  • Supply-chain analysis

Topics: Inferred · not functionally tested

Tags
ci-securitygithub-actionsprompt-injectionsupply-chain-security

JSON profile · Text profile · Access guide

Built with & integrations

Connectors
github
Runs on
CLISelf-hosted

Trust & compliance

License
MIT
Public signals
HTTPSOpen Source

Indexing history

1

What PulseGate has recorded for this listing

  1. Indexed31 Aug · 11:48 UTC
    agentpipe-scan seen via PyPI Bulk Enumerator
    Source: PyPI Bulk Enumerator · Open

Frequently asked questions about agentpipe-scan

What does agentpipe-scan do?
Inferred · not functionally tested: Agentpipe-scan focuses on detecting CI agents that process untrusted GitHub events and could expose secrets. It is catalogued under AI & LLM security on PulseGate.
Who is agentpipe-scan for?
Inferred · not functionally tested: agentpipe-scan is an open-source project built for security engineers and DevOps developers.
Is agentpipe-scan free?
Basis unknown · not verified: Yes — agentpipe-scan is open source under the MIT license and free to use.
What platforms does agentpipe-scan run on?
Basis unknown · not verified: agentpipe-scan runs on the command line. It can also be self-hosted.
Is agentpipe-scan still active?
PulseGate's liveness check found it on 3 Oct 2026.
What projects are similar to agentpipe-scan?
Similar projects tracked by PulseGate include agentproof-scan, Agent Scan, and agentscan-py.agentproof-scanAgent Scanagentscan-py
How long has agentpipe-scan been around?
agentpipe-scan first shipped in 2026.
Is agentpipe-scan open source?
Basis unknown · not verified: Yes — agentpipe-scan is open source under the MIT license.

Similar projects

Closest matches by what these projects do