74
/ 100
1 month ago
glama

AgentShield

Full-stack security for AI agents — static analysis + MCP runtime interception. 31 rules detect prompt injection, data exfiltration, backdoors, tool poisoning, and cross-file attack chains. Includes MCP proxy for real-time blocking, Python AST taint tracking, multi-language injection detection (8 languages), and AI-powered deep analysis. Free, offline, zero-config.

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.

Install from

M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.

// key findings
🚨
Secret credentials may flow to a network call
1 flow detected: FEISHU_APP_SECRET. We can’t prove the destination matches the brand the credential belongs to.
⚠️
Known vulnerabilities in dependencies: 1 high
Affects packages this MCP installs at runtime. Upgrade or remove the affected dependency.
🔐
You'll be asked for 8 credentials: AGENTSHIELD_API_KEY, AGENT_SHIELD_API_KEY, ANTHROPIC_API_KEY, AWS_SECRET_ACCESS_KEY, FEISHU_APP_SECRET, GITHUB_TOKEN, LLM_API_KEY, OPENAI_API_KEY
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// known CVEs in dependencies1 high

Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.

highglob@11.0.1GHSA-5j98-mcp5-4vw2

glob CLI: Command injection via -c/--cmd executes matches with shell:true

Depend on this server? Get alerted when its CVEs change.Watch this server free →
// required environment variables
This server reads these from process.env. You'll be asked to provide them before it can run.
🔐 secretAGENTSHIELD_API_KEY
configAGENTSHIELD_BASE_URL
configAGENTSHIELD_MODEL
🔐 secretAGENT_SHIELD_API_KEY
configAGENT_SHIELD_BASE_URL
configAGENT_SHIELD_MODEL
🔐 secretANTHROPIC_API_KEY
🔐 secretAWS_SECRET_ACCESS_KEY
configFEISHU_APP_ID
🔐 secretFEISHU_APP_SECRET
🔐 secretGITHUB_TOKEN
🔐 secretLLM_API_KEY
configOLLAMA_BASE_URL
🔐 secretOPENAI_API_KEY
configOPENAI_BASE_URL
configOPENAI_MODEL
configPORT
// full audit trail
The full breakdown of what we checked, the deductions that landed, the network hosts, the dependency advisories, and concrete fix guidance is available to verified publishers.
// improvement guidance — verified publishers only
We have 7 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/elliotllliu-agent-shield-i9koi2)](https://m8ven.ai/mcp/elliotllliu-agent-shield-i9koi2)
commit: 8921cc2ce328b20ee65cd428d84576677874b0ce
code hash: 60aeed9a9ba5e2657c279a8b020b80b6ebedcc51bf77d8a2e31995eab323942c
verified: 6/12/2026, 11:43:07 AM
view raw JSON →