Scan Any AI Agent Security Vulnerabilities
58K+
Skills & MCP servers scanned
7
Registries monitored daily
188+
Detection rules
15
Security categories
What the scanner detects
Every scan checks for vulnerabilities across 15 security categories
How it works
Three steps to find security vulnerabilities in any AI agent skill, MCP server, or configuration file.
Provide a source
Enter a GitHub URL, paste content directly, or drag and drop a file. Supports repositories, directories, and individual files.
Scan locally in your browser
Aguara runs entirely in your browser via WebAssembly. No server, no uploads. Your code never leaves your machine.
Get your security report
Receive an A-F grade, detailed severity breakdown, and actionable findings. Download reports as JSON or HTML.
Provide a source
Enter a GitHub URL, paste content directly, or drag and drop a file.
Scan locally in your browser
Aguara runs via WebAssembly. No server, no uploads. Your code stays in your browser.
Get your security report
A-F grade, severity breakdown, and downloadable JSON or HTML reports.
Why scan your AI agent tools?
AI agents can execute code, access files, and make network requests on your behalf. A malicious or poorly written skill can leak credentials, exfiltrate data, or run arbitrary commands on your system. Scanning before installing catches these risks before they become incidents.
Prompt injection
Hidden instructions can hijack your AI agent and override its behavior.
Credential theft
Skills can contain or request API keys, tokens, and secrets from your environment.
Code execution
Malicious tools can run shell commands or download scripts on your system.
Loading scanner...
First load downloads ~2 MB (cached after)
Download your security report
Share it with your team or keep it for your records