AIShield Security Scanner

Scans MCP servers for tool poisoning, prompt injection and supply chain risks.

我該用這個嗎

品質與安全性

A
說明品質
82%
結構描述完整度
96%
命名品質
80%
汙染風險
100%
權限相符程度
100%
協定合規性
100%

發現項目(4)

  • LOWTool 'aishield_scan' description lacks action verb在 aishield_scan 中
  • LOWTool 'aishield_prompt_check' description lacks action verb在 aishield_prompt_check 中
  • LOWTool 'aishield_banned_words' description lacks action verb在 aishield_banned_words 中
  • LOWTool 'aishield_vertical_risk' description lacks action verb在 aishield_vertical_risk 中

根據工具定義與協定合規性的自動化分析。

上下文成本

~984Token(工具定義)
~712 B典型回應大小
中等的注意力影響(128k 上下文的 0.77%)

這是每次將伺服器的工具載入模型上下文時所消耗的約略 token 數量。數量越高,可用於其他工作的注意力就越少。

安裝

一鍵安裝

將以下內容加入你的 `claude_desktop_config.json` 檔案:

{
  "mcpServers": {
    "aishield": {
      "command": "npx",
      "args": [
        "aishield-mcp-server"
      ]
    }
  }
}

可執行的套件

npmaishield-mcp-server4.3.0stdio

遠端端點

https://aishield.tools/api/v1/mcpstreamable-http

它能做什麼

工具清單

工具(10)

🟢 唯讀🟡 寫入🔴 刪除⚪ 未知
⚪aishield_scan(source_url, tool_type, name)

OWASP MCP Top 10 aligned security scan — 235 rules, 5-dimension scoring

輸入結構描述

{
  "type": "object",
  "properties": {
    "source_url": {
      "type": "string",
      "description": "GitHub repo URL"
    },
    "tool_type": {
      "type": "string",
      "enum": [
        "mcp",
        "skill",
        "gpt",
        "prompt"
      ],
      "default": "mcp"
    },
    "name": {
      "type": "string",
      "description": "Tool name"
    }
  },
  "required": [
    "source_url"
  ]
}
🟢aishield_guardrail(source_url, auto_block)

Pre-install safety check — pass/block verdict

輸入結構描述

{
  "type": "object",
  "properties": {
    "source_url": {
      "type": "string",
      "description": "GitHub repo URL"
    },
    "auto_block": {
      "type": "boolean",
      "default": true
    }
  },
  "required": [
    "source_url"
  ]
}
🟢aishield_prompt_check(prompt)

Prompt injection detection — Chinese + English

輸入結構描述

{
  "type": "object",
  "properties": {
    "prompt": {
      "type": "string",
      "description": "Prompt text to check (min 10 chars)"
    }
  },
  "required": [
    "prompt"
  ]
}
⚪aishield_banned_words(text, platform)

Chinese banned words detection — 6 platform rules

輸入結構描述

{
  "type": "object",
  "properties": {
    "text": {
      "type": "string",
      "description": "Text to check"
    },
    "platform": {
      "type": "string",
      "enum": [
        "douyin",
        "xiaohongshu",
        "wechat",
        "weibo",
        "bilibili",
        "kuaishou",
        "all"
      ],
      "default": "all"
    }
  },
  "required": [
    "text"
  ]
}
🟢aishield_rug_pull(source_url)

Rug pull detection — check if a tool has removed security code or added suspicious changes in recent commits

輸入結構描述

{
  "type": "object",
  "properties": {
    "source_url": {
      "type": "string",
      "description": "GitHub repo URL"
    }
  },
  "required": [
    "source_url"
  ]
}
🟢aishield_handshake(source_url)

MCP handshake verification — analyze MCP config, detect npx auto-install, sensitive env vars, oversized tool descriptions, and attempt HTTP handshake

輸入結構描述

{
  "type": "object",
  "properties": {
    "source_url": {
      "type": "string",
      "description": "GitHub repo URL"
    }
  },
  "required": [
    "source_url"
  ]
}
⚪aishield_digest(configs, scan_result, source_url, max_findings)

Compact trust digest (aishield-digest/v1) — a few hundred bytes plus a content fingerprint, so an agent can answer 'can I trust this?' every turn without re-pulling the full report. Accepts {configs} (static analysis only), {scan_result}, or {source_url}. The returned `risk` is never lighter than the worst finding actually present (a config with high findings is never labelled 'safe'), and no plaintext credential is ever echoed back.

輸入結構描述

{
  "type": "object",
  "properties": {
    "configs": {
      "type": "object",
      "description": "{path: file content} MCP client config map — static analysis, no command in the config is ever executed"
    },
    "scan_result": {
      "type": "object",
      "description": "An existing scan result to compress"
    },
    "source_url": {
      "type": "string",
      "description": "GitHub repo URL — return the current trust verdict as a digest"
    },
    "max_findings": {
      "type": "integer",
      "minimum": 0,
      "maximum": 20,
      "default": 3,
      "description": "How many top findings to include"
    }
  }
}
⚪aishield_vertical_risk(text, domain)

Vertical-industry risk scan — detect high-risk claims for finance/medical/gov sectors (unlicensed diagnosis, illegal medical device, financial over-promise, etc.)

輸入結構描述

{
  "type": "object",
  "properties": {
    "text": {
      "type": "string",
      "description": "Text content to scan"
    },
    "domain": {
      "type": "string",
      "enum": [
        "finance",
        "medical",
        "government"
      ],
      "default": "finance",
      "description": "Vertical domain"
    }
  },
  "required": [
    "text"
  ]
}
🟢agent_register(agent_name, capabilities, owner)

Agent-First one-click onboarding — register as an Agent, get DID + API Key + quick start guide in a single call

輸入結構描述

{
  "type": "object",
  "properties": {
    "agent_name": {
      "type": "string",
      "description": "Agent name (required)"
    },
    "capabilities": {
      "type": "array",
      "items": {
        "type": "string"
      },
      "description": "Capability list, e.g. [\"scan\", \"monitor\"]"
    },
    "owner": {
      "type": "string",
      "description": "Owner identifier"
    }
  },
  "required": [
    "agent_name"
  ]
}
⚪agent_quick_scan(tool_name, tool_description, source_url)

Agent-First quick scan — scan a tool by name and description, no source URL required

輸入結構描述

{
  "type": "object",
  "properties": {
    "tool_name": {
      "type": "string",
      "description": "Tool name (required)"
    },
    "tool_description": {
      "type": "string",
      "description": "Tool description (required)"
    },
    "source_url": {
      "type": "string",
      "description": "Optional GitHub repo URL for deep scan"
    }
  },
  "required": [
    "tool_name",
    "tool_description"
  ]
}

社群

為此伺服器評分

證據

近期觀測

已驗證未記錄版本10 個工具
已驗證未記錄版本9 個工具