Agentโ™ฅ๏ธŽAge
Catalog

AI AppSec

Official

by subodhkc ยท TypeScript

Evidence-backed AppSec for AI applications and agents. Powered by HAIEC.

io.github.subodhkc/ai-appsec MCP Server

Evidence-backed AppSec for AI applications and agents, powered by HAIEC. The server produces deterministic, reproducible static security evidence for AI-agent and AI-application source code, targeting security risks before commit, push, merge, or deploy. It uses Semgrep 1.173.0 as its execution engine with a bundled Public Core rulepack.

๐Ÿ› ๏ธ Key Features

  • Static analysis only (does not execute target code)
  • Deterministic and reproducible static security evidence
  • Semgrep 1.173.0 execution engine
  • Bundled Public Core rulepack (122 detectors, 79 security checks)

๐Ÿš€ Use Cases

  • Audit AI code for security risks before commit, push, merge, or deploy

โšก Developer Benefits

  • Deterministic outputs for reproducible evidence
  • Static security evidence via Semgrep-based checks

โš ๏ธ Limitations

  • Normal scans do not require network, but Semgrep setup may require network

Topics

ai-agent-securityai-securityapplication-securitydevsecopsllm-securitymcpmcp-securitysastsecurity-scannersemgrepai-appsec

Related servers

More in Security