Audite seu Agente e Servidor MCP
Simule ataques adversariais reais, detecte envenenamento de ferramentas e obtenha um prompt de 1 clique para proteger seu código no Cursor, Claude Code ou OpenCode.
Strong Baseline
Audit flagged 1 vulnerabilities against the Galvanize-60M benchmark.
ev_5899e3e77b2f8a9cDETALHAMENTO POR PILARES DE SEGURANÇA (BENCHMARK GALVANIZE)
CHECKLIST DE AUDITORIA (12 VERIFICAÇÕES)
Audit against adversarial instruction overrides and boundary escape markers ([SYSTEM], <<SYS>>, <im_start>).
Evaluates resilience against multi-token indirect injections hidden in retrieved documents and tool outputs.
import { withZnGateway } from '@usezn/gateway';
// Blindagem automática em 12ms com Galvanize-60MNeutralize injeção indireta (OWASP-LLM01) e tool poisoning (OWASP-LLM02) no loop do seu agente com o gateway Galvanize-60M.
Ativar Gateway de Produção · Plano de teste grátis incluídoVerifies the agent refuses imperatives commanding it to leak system prompts, API keys, or memory records.
Ensures all tool parameters define explicit primitive types, bounds, and reject unconstrained open objects.
Scans tool descriptions and metadata for embedded prompt injection vectors and planner coercion attacks.
Prevents adversarial context from redefining, shadowing, or overriding system tool definitions.
Flags tools providing unconstrained bash, powershell, or eval access on host environments (OWASP LLM08).
Verifies file operations are strictly scoped to isolated directory sandboxes without write traversal.
Verifies that API keys, passwords, and tokens are injected at gateway layer, never as model parameters.
Validates that agent endpoints and MCP transport connections enforce HTTPS encryption in transit.
Checks for standard Authorization headers and OAuth 2.1 RFC token verification on MCP endpoints.
Requires explicit human approval workflows before executing irreversible financial or account mutations.
Leaderboard Público de Segurança de Servidores MCP
Classificações de segurança verificadas nos servidores Model Context Protocol mais adotados.
| Posição | Servidor / Alvo | Pontuação | Nota | Ação |
|---|---|---|---|---|
| #1 | zn-Hardened Enterprise Gateway zn-hardened-gateway · Gateway | 100/100 | A+ | |
| #2 | GitHub Copilot Workspace Agent github.com/github/copilot-agent · Developer Tools | 91/100 | A | |
| #3 | Model Context Protocol (Official Reference) modelcontextprotocol.io · Core Protocol | 90/100 | A | |
| #4 | PostgreSQL MCP Server modelcontextprotocol/servers/postgres · Database | 88/100 | A | |
| #5 | Brave Search MCP Server modelcontextprotocol/servers/brave-search · Search & Web | 86/100 | A | |
| #6 | AWS Cloud MCP Server aws.amazon.com/mcp/cloud · Cloud Infrastructure | 85/100 | A | |
| #7 | Google Drive MCP Server mcp.google.com/drive · Collaboration | 84/100 | B | |
| #8 | Redis MCP Server github.com/redis/mcp-redis · Database | 84/100 | B | |
| #9 | Notion MCP Server mcp.notion.com · Collaboration | 83/100 | B | |
| #10 | Sentry Error Tracking MCP mcp.sentry.dev · Observability | 83/100 | B | |
| #11 | Slack MCP Server modelcontextprotocol/servers/slack · Collaboration | 82/100 | B | |
| #12 | Kubernetes Cluster MCP mcp.kubernetes.io · Cloud Infrastructure | 80/100 | B | |
| #13 | Docker Container MCP mcp.docker.com · Containers | 79/100 | B | |
| #14 | SQLite Local MCP sqlite.local · Database | 78/100 | B | |
| #15 | Git Version Control MCP git-mcp.dev · Developer Tools | 76/100 | B | |
| #16 | Puppeteer Browser MCP mcp.puppeteer.dev · Browser Automation | 75/100 | B | |
| #17 | Filesystem Scoped MCP modelcontextprotocol/servers/filesystem · System & FS | 74/100 | B | |
| #18 | Fetch Web Scraping MCP mcp.fetch.dev · Search & Web | 71/100 | B | |
| #19 | Discord Community MCP mcp.discord.dev · Community | 68/100 | C | |
| #20 | Unrestricted Shell Agent Legacy legacy-open-interpreter.local · Legacy OS Agent | 66/100 | C |
Exiba sua classificação verificada no GitHub
Incorpore este badge dinâmico no README.md do seu repositório para certificar a segurança do seu agente.
[-yellow?style=flat-square&logo=shield)](https://usezn.com/scan/)Proteja seu Agente IA com Galvanize-60M em 1 Linha
Defesa sacrificial contra injeções de prompt e envenenamento de ferramentas. Inferência sub-15ms em CPU com zero retenção de dados.