Detection rules

Every rule, with a demo you can run.

All 54 rules. Pick one to see a file that triggers it, the part that matters, and the result the scanner produces. The results are generated by running the real scanner, not written by hand.

The interactive demos need JavaScript. Here's every rule in the meantime.

Agent safety

Exfiltration

Credentials

Supply chain

Execution

OWASP MCP Top 10

Coverage across all ten categories.

Every rule maps to at least one category in the OWASP MCP Top 10, which is still in beta. Some rules cover more than one category, so the counts add up to more than the number of rules. Lack of audit and telemetry has one rule, and should: logging is a problem a scanner can point at, not solve.

CategoryNameRulesRelative coverage
MCP01Token Mismanagement & Secret Exposure7
MCP02Privilege Escalation via Scope Creep7
MCP03Tool Poisoning13
MCP04Software Supply Chain Attacks & Dependency Tampering13
MCP05Command Injection & Execution8
MCP06Intent Flow Subversion10
MCP07Insufficient Authentication & Authorization3
MCP08Lack of Audit and Telemetry1
MCP09Shadow MCP Servers1
MCP10Context Injection & Over-Sharing9

Run every rule on your own files.

The free plan includes all 54 rules and 20 scans a month.