审计您的 Agent 与 MCP 服务端
模拟真实对抗性注入攻击,检测工具链越权与协议合规性。获取安全评分并一键生成提示词直接修复 Cursor、Claude Code 或 OpenCode 中的代码。
Moderate Risk
Audit flagged 2 vulnerabilities against the Galvanize-60M benchmark.
ev_4fea13237b2f8a9c安全支柱详细评估(GALVANIZE 基准)
审计检查清单(12 项已验证检查)
Audit against adversarial instruction overrides and boundary escape markers ([SYSTEM], <<SYS>>, <im_start>).
Evaluates resilience against multi-token indirect injections hidden in retrieved documents and tool outputs.
import { withZnGateway } from '@usezn/gateway';
// Galvanize-60M 12ms 自动加固使用 Galvanize-60M 网关在代理循环内联拦截间接注入(OWASP-LLM01)与工具投毒(OWASP-LLM02)。
激活生产网关 · 含免费试用方案Verifies the agent refuses imperatives commanding it to leak system prompts, API keys, or memory records.
Ensures all tool parameters define explicit primitive types, bounds, and reject unconstrained open objects.
Scans tool descriptions and metadata for embedded prompt injection vectors and planner coercion attacks.
Prevents adversarial context from redefining, shadowing, or overriding system tool definitions.
Flags tools providing unconstrained bash, powershell, or eval access on host environments (OWASP LLM08).
Verifies file operations are strictly scoped to isolated directory sandboxes without write traversal.
Verifies that API keys, passwords, and tokens are injected at gateway layer, never as model parameters.
Validates that agent endpoints and MCP transport connections enforce HTTPS encryption in transit.
Checks for standard Authorization headers and OAuth 2.1 RFC token verification on MCP endpoints.
Requires explicit human approval workflows before executing irreversible financial or account mutations.
公开 MCP 与智能体安全排行榜
覆盖最广泛采用的 Model Context Protocol 服务器的已验证安全基准。
| 排名 | 服务器 / 目标 | 评分 | 评级 | 操作 |
|---|---|---|---|---|
| #1 | zn-Hardened Enterprise Gateway zn-hardened-gateway · Gateway | 100/100 | A+ | |
| #2 | GitHub Copilot Workspace Agent github.com/github/copilot-agent · Developer Tools | 91/100 | A | |
| #3 | Model Context Protocol (Official Reference) modelcontextprotocol.io · Core Protocol | 90/100 | A | |
| #4 | PostgreSQL MCP Server modelcontextprotocol/servers/postgres · Database | 88/100 | A | |
| #5 | Brave Search MCP Server modelcontextprotocol/servers/brave-search · Search & Web | 86/100 | A | |
| #6 | AWS Cloud MCP Server aws.amazon.com/mcp/cloud · Cloud Infrastructure | 85/100 | A | |
| #7 | Google Drive MCP Server mcp.google.com/drive · Collaboration | 84/100 | B | |
| #8 | Redis MCP Server github.com/redis/mcp-redis · Database | 84/100 | B | |
| #9 | Notion MCP Server mcp.notion.com · Collaboration | 83/100 | B | |
| #10 | Sentry Error Tracking MCP mcp.sentry.dev · Observability | 83/100 | B | |
| #11 | Slack MCP Server modelcontextprotocol/servers/slack · Collaboration | 82/100 | B | |
| #12 | Kubernetes Cluster MCP mcp.kubernetes.io · Cloud Infrastructure | 80/100 | B | |
| #13 | Docker Container MCP mcp.docker.com · Containers | 79/100 | B | |
| #14 | SQLite Local MCP sqlite.local · Database | 78/100 | B | |
| #15 | Git Version Control MCP git-mcp.dev · Developer Tools | 76/100 | B | |
| #16 | Puppeteer Browser MCP mcp.puppeteer.dev · Browser Automation | 75/100 | B | |
| #17 | Filesystem Scoped MCP modelcontextprotocol/servers/filesystem · System & FS | 74/100 | B | |
| #18 | Fetch Web Scraping MCP mcp.fetch.dev · Search & Web | 71/100 | B | |
| #19 | Discord Community MCP mcp.discord.dev · Community | 68/100 | C | |
| #20 | Unrestricted Shell Agent Legacy legacy-open-interpreter.local · Legacy OS Agent | 66/100 | C |
在 GitHub 上展示已验证的安全评级
将此动态盾牌徽章嵌入您的仓库 README.md,证明您的智能体安全等级。
[-yellow?style=flat-square&logo=shield)](https://usezn.com/scan/)仅需 1 行代码,使用 Galvanize-60M 保护您的 AI 智能体
针对提示词注入、填充绕过和工具投毒的牺牲性防御。CPU 延迟小于 15ms,零数据保留。