agent-sec
Zero-install security baseline for AI coding agents — OWASP/CWE-cited rules over MCP.
使うべきか
品質と安全性
検出事項(1)
- LOWget_security_baseline 内
ツール定義とプロトコルへの準拠に関する自動分析に基づいています。
コンテキストコスト
これは、サーバーのツールがモデルのコンテキストに読み込まれるたびに消費されるおおよそのトークン数です。数が多いほど、ほかのタスクに使える注意が減ります。
インストール
ワンクリックインストール
これを `claude_desktop_config.json` ファイルに追加してください:
{
"mcpServers": {
"agent-sec": {
"url": "https://agentsec.kernora.ai/mcp"
}
}
}リモートエンドポイント
https://agentsec.kernora.ai/mcpstreamable-httpできること
ツール一覧
ツール(2)
🟢get_security_baseline
Return Kernora Agent Security's curated security baseline — the known-good rules an AI coding agent should follow (secrets, injection, supply-chain, destructive ops, data protection). Advisory grounding.
入力スキーマ
{
"type": "object",
"properties": {}
}🟢check_action(action)
Advisory check: given a described action or command the agent is about to take, return the baseline security factlets that plausibly apply, so the agent can self-correct. Advisory only — does NOT block. Real-time blocking is Kernora Agent Security's paid Integrity Plane.
入力スキーマ
{
"type": "object",
"properties": {
"action": {
"type": "string",
"description": "the action/command about to run"
}
},
"required": [
"action"
]
}推奨プロンプト
get_security_baselineget_security_baselineコミュニティ
エビデンス