garagon/aguara

Security scanner for AI agent skills & MCP servers. 173 detection rules. 13 categories. 5 registries monitored daily. OpenClaw detection included. No API keys, no cloud, no LLM. One binary. Detection engine behind Oktsec.

42
/ 100
Emerging

Aguara is a security scanner designed for individuals and teams developing and deploying AI agent skills and Multi-Agent Collaboration Protocol (MCP) servers. It takes your agent skill files and MCP configurations as input and identifies potential security vulnerabilities like prompt injection, data exfiltration, and supply-chain attacks. The output is a detailed report indicating risks, helping security engineers and AI developers ensure their AI systems are safe before they go live.

Use this if you need to proactively scan AI agent skill files and MCP server configurations for security threats and vulnerabilities before they are deployed.

Not ideal if you're looking for a runtime protection solution, as this tool focuses on static analysis before deployment.

AI-security agent-development secure-AI-deployment vulnerability-scanning DevSecOps
No Package No Dependents
Maintenance 10 / 25
Adoption 8 / 25
Maturity 11 / 25
Community 13 / 25

How are scores calculated?

Stars

49

Forks

7

Language

Go

License

Apache-2.0

Last pushed

Mar 11, 2026

Commits (30d)

0

Get this data via API

curl "https://pt-edge.onrender.com/api/v1/quality/mcp/garagon/aguara"

Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.