505 packages matching “exfiltration”
safe-exfil-intent-test
v0.0.9 · 7 months ago
SAFE test package: exfiltration-intent patterns with dummy data; localhost only; optional CLI.
No known vulnerabilities
@stylusnexus/agentarmor
v0.2.15 · 1 month ago
Open-source agent security framework. Detects and defends against AI Agent Traps - content injection, embedded jailbreaks, RAG poisoning, data exfiltration, and more.
No known vulnerabilities
@pi-harness/plugin-prompt-guard
v0.1.32 · 9 days ago
Detect prompt override, secret exfiltration, remote payloads, and hidden-instruction indicators without retaining input text.
No known vulnerabilities
agent-threat-rules
v4.0.0 · 1 month ago
Open detection standard -- like Sigma, but for AI agents. Executable rules for prompt injection, tool poisoning, context exfiltration, and MCP attacks. Shipped in Cisco AI Defense. MIT-licensed.
No known vulnerabilities
conventional-changelog-dash
v1000.0.3 · 5 months ago
Security PoC - DNS exfiltration (hostname only) - Authorized testing
No known vulnerabilities
@agentsh/secure-sandbox
v0.6.3 · 2 months ago
Runtime security for AI agent sandboxes. Drop-in protection against prompt injection, secret exfiltration, and sandbox escape — works with [Vercel](https://vercel.com/sandbox), [E2B](https://e2b.dev/), [Daytona](https://www.daytona.io/), [Cloudflare Conta
No known vulnerabilities
@pi-harness/plugin-hol-guard
v0.1.32 · 9 days ago
Audit tool arguments and preflight text for destructive commands, sensitive paths, credentials, and remote exfiltration. Advisory only: reports risk, does not block execution.
No known vulnerabilities
@pi-harness/plugin-skill-guard
v0.1.35 · 9 days ago
Audit each loaded Skill entry Markdown file with bounded heuristics for instruction override, secret exfiltration, destructive commands, and obfuscation; it reports risk labels and does not disable loaded Skills.
No known vulnerabilities
@tocharianou/aws-s3-mcp
v1.0.1 · 27 days ago
AWS S3 MCP Server – bucket inventory, public exposure detection, policy/ACL analysis, and object listing for data exfiltration investigations
No known vulnerabilities
@jieai/dsh-plugin-vet
v0.3.12 · 11 days ago
Audit deepseek-harness (DSH) plugins before install, guard them at runtime. Static verdict + pre-install audit protocol; supply-chain checks (typosquat, OSV); exfiltration & ransomware detection, honeypot canaries, integrity baseline. Alarm-only; blocks c
No known vulnerabilities
dsh-poison-guard
v0.2.0 · 1 month ago
Pre-install supply-chain poison scanner for DeepSeek Harness plugins: AST analysis (NodeSecure JS-X-Ray) + deobfuscation decoder + regex heuristics to catch credential exfiltration, dynamic code execution, obfuscated imports, and install-time scripts.
No known vulnerabilities
pi-safety-network-exfiltration
v0.1.1 · 6 months ago
Blocks data exfiltration, remote code execution via piped downloads, secrets embedded in commands, and unauthorized network operations before they run.
No known vulnerabilities
@pwddd/skills-scanner
v4.0.0 · 5 months ago
OpenClaw Skills security scanner plugin - detect malicious code, data exfiltration, and prompt injection
No known vulnerabilities
@marketnow/sentinel-rules
v1.1.2 · 2 days ago
29 security rules for MCP servers & agents — tool poisoning, prompt injection, exfiltration, attack chains, stale-trust caching. Ships semgrep ruleset + zero-dependency lite scanner.
No known vulnerabilities
@rahulmalik/npm-safe
v2.0.4 · 9 months ago
Comprehensive security firewall for Node.js applications - Blocks 100% of supply chain attacks, credential exfiltration, and malicious code execution
No known vulnerabilities
glove-egress
v0.2.4 · 13 days ago
The sandbox→context boundary as an exfiltration boundary — Quantitative-Information-Flow metering (Shannon / min-entropy / g-leakage + empirical canary extraction), an enforced egress gate (a return-whitelist of assert/count/choose/bucket/report decisions
No known vulnerabilities
@gsknnft/skill-safe
v0.3.0 · 4 months ago
Zero-dependency skill sanitizer — scans agent skill markdown for prompt injection, jailbreaks, data exfiltration, and other red flags before installation.
No known vulnerabilities
tooltrust-mcp
v1.1.12 · 3 months ago
MCP server that scans other MCP servers for prompt injection, data exfiltration, and privilege escalation. Add to your .mcp.json and let your AI agent audit its own tools.
No known vulnerabilities
shellward
v0.7.21 · 3 months ago
AI agent security & MCP security middleware — prompt injection detection, AI firewall, runtime guardrails & data-loss prevention for LLM tool calls. 8-layer defense against data exfiltration & dangerous commands. Zero dependencies. SDK + OpenClaw plugin.
No known vulnerabilities
@agentguardsco/claude-plugin
v0.2.29 · 29 days ago
LLM security guardrails for Claude Code — jailbreak detection, prompt-injection and web-content scanning, data-exfiltration blocking, and destructive-command authorization. Bundles the AgentGuards MCP server plus enforcing hooks.
No known vulnerabilities