MCP Config Checker
Spot exposed secrets, broad file access, and risky startup commands. Checks run in your browser.
Check a configFor teams defending real systems
Check your agents. Understand the incidents. Leave with one useful action before next Wednesday.
Explore MCP, Zero Trust, or our Exploit Wednesday guide.

The workbench
Spot exposed secrets, broad file access, and risky startup commands. Checks run in your browser.
Check a configReview SKILL.md for risky commands, secret access, and permission bypasses. Keep your file in your browser.
Review a skillMap what an agent could reach across your tools, identities, and production systems.
Explore permissionsFrom the desk
AI Agent Security
What agent 'sacrifice' meant in the Hugging Face incident, what remains unproven about hidden agents, and how defenders can verify containment and recovery.
AI-assisted Awaiting editor review
AI in Security
Recent Wiz honeypot research shows why AI security monitoring needs process, network, and credential evidence alongside conversation logs.
AI-assisted Awaiting editor review
AI in Security
The September 9, 2026 HackWednesday weekly signal turns current security headlines into a practical incident, vulnerability, and AI-risk triage queue.
AI-assisted Awaiting editor review
Find your starting point
Beyond the headlines