SentriClaw scans MCP servers and AI agent tools for prompt injection, credential theft, and supply-chain attacks — 25 detection rules, real-time monitoring, and native Claude Code integration.
Six pillars protect your AI agent ecosystem from malicious tools, prompt injection, and supply-chain attacks.
When we launch, three steps to continuous security monitoring.
pip install sentriclaw
One command. No config files, no Docker, no infrastructure.
sentriclaw watch --webhook $URL
Point it at your MCP servers and pass a webhook URL. Auto-discovers Claude, Cursor, VS Code, Windsurf, and Antigravity configs.
Watching 3 MCP servers...
Real-time filesystem monitoring with delta alerting. Only new threats trigger notifications.
The full scanner will be free at launch. Join the waitlist to be first in line.
Every scan runs the full rule engine — deterministic, reproducible, no LLM variance.
Obfuscation, outbound URLs, shell execution, credential access, prompt injection, and data exfiltration.
YAML frontmatter, manifests, permission keys, suspicious file types, and oversized payloads.
170k+ indicators — malicious publishers, domains, file hashes, and IP addresses. Fed by 6 live sources including URLhaus, ThreatFox, MalwareBazaar, and Feodo Tracker.
Missing manifests, prompt injection in tool descriptions, excessive permissions, drift detection, and typosquatting.
DeBERTa-v3 deep learning classifier for sophisticated prompt injection that evades pattern matching.
FSEvents on macOS, inotify on Linux, ReadDirectoryChangesW on Windows. Near-instant detection, not polling.
Fingerprinted state file tracks known findings. Only new threats trigger notifications — no alert fatigue.
Auto-watches Claude Desktop, Claude Code, Cursor, VS Code, Windsurf, and Antigravity MCP configs. New server added? Scanned immediately.
Block Kit formatted alerts with severity, rule IDs, and evidence. Renders natively in any Slack channel.
Rich embeds with color-coded severity, inline fields, and timestamps. Designed for security channels.
Bot API messages with Markdown formatting. Web preview disabled to prevent unfurling malicious URLs from findings.
Drop your info and we'll notify you as soon as SentriClaw is available.