ToolTrust

AI Agent Tool Security Directory

Security analysis for MCP servers, skills, and AI agent tools. Every tool is scanned for prompt injection, permission risks, and scope mismatches.

207

Tools Scanned

119

Safe (S/A/B)

81

Medium Risk (C)

7

Risky (D/F)

Scan your own MCP tools

ToolTrust Scanner is a free CLI that audits MCP servers for prompt injection, permission risks, and supply-chain vulnerabilities.

1 · Install

$ curl -sfL https://raw.githubusercontent.com/AgentSafe-AI/tooltrust-scanner/main/install.sh | bash

2 · Scan any MCP server

$ tooltrust-scanner scan --server "npx -y @modelcontextprotocol/server-filesystem /tmp"
Full docs & GitHub Actions integration →