Snyk Agent Scan

Snyk Agent Scan

Official
Snyk

Scans AI agents, MCP servers, and agent skills for security vulnerabilities including prompt injections, malware payloads, and credential issues. Auto-discovers components from Claude, Cursor, Windsurf, and other agent platforms.

1,779208 views181Local (stdio)

What it does

  • Auto-discover MCP configurations and agent tools
  • Scan for prompt injection vulnerabilities
  • Detect malware payloads in natural language
  • Check for credential handling issues
  • Identify tool poisoning and shadowing attacks
  • Scan Claude, Cursor, Windsurf, and Gemini CLI setups

Best for

AI developers using MCP serversSecurity teams auditing agent deploymentsOrganizations using AI coding assistantsDevelopers building custom agent skills
15+ distinct security risk types1,700+ GitHub starsTechnical report on agent ecosystem threats

Alternatives