{"repo":"inkog-io/inkog","free":true,"listed":false,"github":"https://github.com/inkog-io/inkog","clone":"git clone https://github.com/inkog-io/inkog.git","description":"Static security scanner for AI agents. Catches prompt injection, runaway loops, missing oversight, and compliance gaps across 21 frameworks. Use from Claude Code, Cursor, ChatGPT (MCP), the CLI, or GitHub Actions.","language":"Go","stars":28,"topics":["ai-security","llm-security","security-tools","static-analysis","cli","devsecops","golang","owasp","owasp-llm-top-10","sast"],"license":"Apache-2.0","category":"cli-tools","readme_excerpt":"The pre-flight check for AI agents. Static analysis that catches the bugs only agent code can have — token bombing, prompt injection, missing oversight, compliance gaps — before they ship. Every scan is a shareable report — view this one live --- Why Inkog Most security tools find SQL injection. Inkog finds the things that only break in agent code : - Token bombing — loops where the LLM controls termination, draining your API budget - Recursive tool calling — one user request fans out into 10,000 LLM invocations - Prompt injection sinks — RAG output flowing into a system prompt no one reviewed - Missing oversight — destructive tools (refunds, deletes, money) firing without human approval - Cross-tenant leakage — global state shared between agent invocations - MCP tool poisoning — malicious tool descriptions hijacking your agent Findings map directly to EU AI Act Article 14 / 15 , NIST AI RMF , ISO 42001 , and OWASP LLM Top 10 — at the article level, not just bucket labels. Try it on a public repo → · no signup, results in 60 seconds. State of AI Agent Security 2026 We scanned 500+ open-source AI agents. 85% had at least one vulnerability. Other findings from the data: - 63% of findings were CRITICAL or HIGH severity - 25% failed EU AI Act Article 14 (human oversight) - 11,705 total findings across LangChain · CrewAI · AutoGen · pydantic-ai · LangGraph · MCP servers · OpenAI Agents · n8n · Flowise · DSPy The largest security analysis of the AI agent ecosystem — original data f","default_branch":null,"files":null,"tree":[],"storefront":"/r/inkog-io","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/inkog-io/inkog/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}