Skip to content
Back to the index

configwarden

PyPIInfrastructure

No liveness check has reached it yet; it is registered on PyPI and has been in the index since 9 Oct 2026. How this is checked

configwarden is an open-source command-line security scanner for AI agent configurations. It checks MCP servers, secrets, and supply-chain risks and can produce SARIF output for security workflows.

Inferred · not functionally tested

Open SourceApache-2.0CLISelf-hosted
Visit PyPI

Overview

6 features

Purpose: Scanning AI agent configurations for security vulnerabilities, exposed secrets, and supply-chain risks.

Inferred · not functionally tested

Audience: developers and DevSecOps teams building AI agents

Inferred · not functionally tested

Functions: data_extraction

Inferred · not functionally tested

Interfaces: API: unknown · MCP: indicated (inferred, not tested) · CLI: indicated (inferred, not tested) · Self-hosting: indicated (inferred, not tested)

Recorded constraints: pricing: open_source · license: Apache-2.0 · platforms: CLI · deployment: cli, self_hosted

Constraint provenance is unknown; confirm requirements with the publisher.

Record sources: pypi.org. These links do not verify the individual claims.

configwarden is an AI & LLM security project. Inferred · not functionally tested: It focuses on scanning AI agent configurations for security vulnerabilities, exposed secrets, and supply-chain risks. Inferred · not functionally tested: It is built as an open-source project for developers and DevSecOps teams building AI agents. Basis unknown · not verified: The project is open source (Apache-2.0). Basis unknown · not verified: It runs on the command line, and it can be self-hosted.

configwarden first shipped in 2026. Inferred · not functionally tested: Among its 6 catalogued features are MCP server scanning, secret detection, and supply-chain analysis. Basis unknown · not verified: Catalogued interfaces include an MCP server.

Summary written by a language model from the project’s public pages.

Tasks: Inferred · not functionally tested

  • MCP server scanning
  • Secret detection
  • Supply-chain analysis
  • AI agent configuration scanning
  • SARIF output
  • DevSecOps integration

Topics: Inferred · not functionally tested

Tags
ai-agent-securitymcp-securitysecret-scanningsupply-chain-security

JSON profile · Text profile · Access guide

Built with & integrations

Connectors
MCP
Runs on
CLISelf-hosted

Trust & compliance

License
Apache-2.0
Public signals
HTTPSOpen SourceFree tier

Indexing history

1

What PulseGate has recorded for this listing

  1. Indexed8 Oct · 22:18 UTC
    configwarden seen via PyPI Bulk Enumerator
    Source: PyPI Bulk Enumerator · Open

Frequently asked questions about configwarden

What does configwarden do?
Inferred · not functionally tested: Configwarden focuses on scanning AI agent configurations for security vulnerabilities, exposed secrets, and supply-chain risks. It is catalogued under AI & LLM security on PulseGate.
Who is configwarden for?
Inferred · not functionally tested: configwarden is an open-source project built for developers and DevSecOps teams building AI agents.
Does configwarden have a free plan?
Basis unknown · not verified: Yes — configwarden is open source under the Apache-2.0 license and free to use.
What platforms does configwarden run on?
Basis unknown · not verified: configwarden runs on the command line. It can also be self-hosted.
Is configwarden still maintained?
Unverified. configwarden has not been re-checked since it entered the index, so there is no finding either way — and only a positive finding would say otherwise.
When did configwarden launch?
configwarden first shipped in 2026.
Is configwarden open source?
Basis unknown · not verified: Yes — configwarden is open source under the Apache-2.0 license.
Does configwarden have an API or integrations?
Basis unknown · not verified: Yes — configwarden exposes an MCP server.

Similar projects

Closest matches by what these projects do