MCP Config Checker
Spot exposed secrets, broad file access, and risky startup commands. Checks run in your browser.
Check a configFor teams defending real systems
Check your agents. Understand the incidents. Leave with one useful action before next Wednesday.
Try MCP, GitHub, or Zero Trust.

The workbench
Spot exposed secrets, broad file access, and risky startup commands. Checks run in your browser.
Check a configReview SKILL.md for risky commands, secret access, and permission bypasses. Keep your file in your browser.
Review a skillMap what an agent could reach across your tools, identities, and production systems.
Explore permissionsFrom the desk
AI Agent Security
What the DseWiki incident reveals about AI agent security, and how teams can prepare with scoped access, network controls, monitoring, and incident response.
AI-assisted Awaiting editor review
AI Agent Security
Learn how always-on AI agents work, what GPT-6 Astra changes, and how to secure agent loops with scoped permissions, durable memory, and clear stop conditions.
AI-assisted Awaiting editor review
AI Agent Security
Burning Man 2026 offers a useful temporary-city metaphor for AI agent security: temporary access, resilience, prompt injection boundaries, human ownership, scoped autonomy, cleanup, and shared drills.
AI-assisted Awaiting editor review
Find your starting point
Beyond the headlines