Skip to content
#

tool-poisoning

Here are 29 public repositories matching this topic...

Open-source security platform for AI agents -- audits skills before install, monitors 24/7, shares threat intelligence across all users. | AI Agent 開源安全平台 -- 安裝前審計 skill、24/7 即時監控、社群共享威脅情報。

  • Updated Aug 23, 2026
  • TypeScript

Reliability & security proxy for the Model Context Protocol (MCP). Self-healing connections, runtime tool-poisoning/shadowing defense, and NIST AI RMF + OWASP LLM Top-10 audit trails for any MCP server. Works with Claude, Cursor, Cline, Windsurf.

  • Updated Aug 31, 2026
  • TypeScript
toolpoison

Security scanner for MCP servers. Detects tool poisoning, prompt injection hidden in tool descriptions, leaked API keys, and supply-chain risk across Claude, Cursor, VS Code, Windsurf and Zed configs. One command, no API key.

  • Updated Aug 10, 2026
  • TypeScript
mcpcustoms

MCPCustoms is the customs checkpoint for MCP tool calls: a zero-dependency TypeScript runtime semantic firewall that inspects every Massive Intelligence (IM) agent tool call before execution. Detects tool poisoning, command/SQL/prompt injection, path traversal, and capability overreach; verifies signed Ed25519 publishers; fail-closed by default.

  • Updated Aug 1, 2026
  • TypeScript

Improve this page

Add a description, image, and links to the tool-poisoning topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the tool-poisoning topic, visit your repo's landing page and select "manage topics."

Learn more