444 packages matching “poisoning”
@hapi/bourne
v4.0.1 · 2 months ago
JSON parse with prototype poisoning protection
No known vulnerabilities
secure-json-parse
v4.1.0 · 11 months ago
JSON parse with prototype poisoning protection
No known vulnerabilities
@fast-check/poisoning
v0.3.1 · 9 days ago
Set of utilities to ease detection and revert of poisoning
No known vulnerabilities
cache-poisoning-pwn-demo
v0.1.32 · 4 months ago
Educational demo: a deliberately vulnerable npm package showing how GitHub Actions cache poisoning can produce a malicious release without stealing any credential. Do NOT use in production.
No known vulnerabilities
@promptshield/cli
v1.2.0 · 4 months ago
Production-grade CLI for auditing AI prompts. Detects invisible characters, homoglyph attacks, and adversarial Unicode poisoning in your development workflow.
No known vulnerabilities
require-poisoning
v2.0.0 · 7 years ago
Cache-Poisoning applied to Node.js require statements so you inject your own modules
No known vulnerabilities
@stylusnexus/agentarmor
v0.2.15 · 1 month ago
Open-source agent security framework. Detects and defends against AI Agent Traps - content injection, embedded jailbreaks, RAG poisoning, data exfiltration, and more.
No known vulnerabilities
@commercial/bourne
v2.0.0 · 6 years ago
JSON parse with prototype poisoning protection
No known vulnerabilities
agent-threat-rules
v4.0.0 · 29 days ago
Open detection standard -- like Sigma, but for AI agents. Executable rules for prompt injection, tool poisoning, context exfiltration, and MCP attacks. Shipped in Cisco AI Defense. MIT-licensed.
No known vulnerabilities
guardmcp
v0.16.0 · 4 days ago
Security scanner for MCP (Model Context Protocol) servers and configs — tool poisoning, secret leaks, rug-pull detection, excessive permissions, insecure transport.
No known vulnerabilities
dry-aged-deps
v2.17.1 · 1 month ago
> Like a fine steak, some dependencies are better aged. Unlike a fine steak, malicious ones won't just give you food poisoning.
No known vulnerabilities
x3r0day-bunnyhijack-poc
v1.0.1 · 17 days ago
BunnyHijack PoC - PATH poisoning demo against Bun trustedDependencies
No known vulnerabilities
@getmcpm/cli
v0.42.0 · 1 day ago
MCP security guard and package manager: block prompt injection, tool poisoning and rug-pulls in Model Context Protocol servers at runtime; trust-scored installs for Claude Desktop, Claude Code, Cursor, VS Code, Windsurf, Gemini CLI.
No known vulnerabilities
sentinel-scan-cli
v1.4.16 · 26 days ago
MCP security scanner: scan MCP servers and tool manifests for tool poisoning, prompt injection, tool-name shadowing, excessive-agency schemas, unpinned/remote sources, and rug-pulls - 10 OWASP-mapped heuristics, CLI + MCP server, fully offline. Also runs
No known vulnerabilities
perimetercli
v0.1.3 · 29 days ago
Security and cost audit for your AI agent toolchain — MCP servers, hooks, skills. One command finds poisoning, dangerous capabilities, context bloat and drift, and gates CI.
No known vulnerabilities
turbo-loader
v1.0.0 · 3 years ago
Name holder for security purposes, prevents registry poisoning attack
No known vulnerabilities
septum
v0.1.1 · 19 hours ago
Deterministic Bounded-Context, Structural File Catalog & Anti-Poisoning Partition for AI Agents
No known vulnerabilities
@marketnow/sentinel-rules
v1.1.2 · 11 hours ago
29 security rules for MCP servers & agents — tool poisoning, prompt injection, exfiltration, attack chains, stale-trust caching. Ships semgrep ruleset + zero-dependency lite scanner.
No known vulnerabilities
mcp-audit-proxy
v0.1.0 · 1 month ago
A transparent audit proxy for MCP servers: records every tool call, detects tool poisoning and rug pulls
No known vulnerabilities
@scan5/ai-guard
v0.13.0 · 2 months ago
AI security scanner and runtime enforcement for LLM applications — detects prompt injection, API key leaks, unsafe output, RAG poisoning, and agent hijacking in code and live traffic.
No known vulnerabilities