Featured

Deploy OpenClaw in 60 seconds β€” 20% off logoDeploy OpenClaw in 60 seconds β€” 20% off

Launch OpenClaw on Hostinger in about 60 seconds and keep your agent live 24/7. Our referral link gives you 20% off, no coupon code needed.

Launch on Hostinger β†’
Run your Hermes agent on Hostinger, fully managed logoRun your Hermes agent on Hostinger, fully managed

Launch Hermes on Hostinger in one click, fully managed, no VPS knowledge needed. Use code ZACAARON10 for 10% off.

Launch on Hostinger β†’
Crawl and scrape any site into clean data, 10% off logoCrawl and scrape any site into clean data, 10% off

Firecrawl crawls and scrapes any site into clean markdown for your agent. Get 1,000 free credits, and new users get 10% off their first purchase.

Try Firecrawl free β†’
Your own AI agent, running 24/7 with QwikClaw logoYour own AI agent, running 24/7 with QwikClaw

QwikClaw sets up and runs an always-on OpenClaw agent for you. One click, no config files, no server setup.

Deploy now β†’
One API to scrape, enrich, and extract the internet. logoOne API to scrape, enrich, and extract the internet.

Context.dev gives your agents a single API to scrape, enrich, and extract live web data β€” no proxies, no parsers, no maintenance.

Start building free β†’
SetupClaw: done-for-you OpenClaw for founders & exec teams logoSetupClaw: done-for-you OpenClaw for founders & exec teams

White-glove OpenClaw for founders and exec teams (4–50+ employees): we install, harden, integrate your tools, and maintain it β€” secured from day one.

Get it set up for you β†’
SEO data APIs for your agent, $1 free credit logoSEO data APIs for your agent, $1 free credit

DataForSEO gives your agent live access to SERP results, keyword data, backlinks, and on-page SEO data through one API. New accounts get a $1 credit, good for up to 20,000 keyword or backlink lookups.

Try DataForSEO free β†’
Reach 47,000+ AI builders

A flat monthly placement in front of developers actively installing AI tools. No lock-in, cancel anytime.

Advertise here β†’

Works with

Claude CodeClaude DesktopCursorVS CodeClineCodex CLIOpenClaw+ any MCP client

Install to Claude Code

This server doesn't publish a one-line install command. Follow the setup in the source repository.

Summary

agent-bom MCP server](https://glama.ai/mcp/servers/@msaad00/agent-bom/badges/score.svg)](https://glama.ai/mcp/servers/@msaad00/agent-bom) 🐍 🏠 ☁️ 🍎 πŸͺŸ 🐧 - AI supply chain security scanner with 18 MCP tools.

README.md

<p align="center"> <picture> <source media="(prefers-color-scheme: dark)" srcset="https://raw.githubusercontent.com/msaad00/agent-bom/main/docs/images/logo-dark.svg"> <img src="https://raw.githubusercontent.com/msaad00/agent-bom/main/docs/images/logo-light.svg" alt="agent-bom" width="320" /> </picture> </p>

<p align="center"> <a href="https://github.com/msaad00/agent-bom/actions/workflows/ci.yml"><img src="https://img.shields.io/github/actions/workflow/status/msaad00/agent-bom/ci.yml?branch=main&style=flat&label=Build" alt="Build"></a> <a href="https://pypi.org/project/agent-bom/"><img src="https://img.shields.io/pypi/v/agent-bom?style=flat&label=PyPI&cacheSeconds=60" alt="PyPI"></a> <a href="https://pypi.org/project/agent-bom/"><img src="https://img.shields.io/badge/Python-3.11%E2%80%933.14-blue?style=flat" alt="Python 3.11 through 3.14"></a> <a href="https://hub.docker.com/r/agentbom/agent-bom"><img src="https://img.shields.io/docker/pulls/agentbom/agent-bom?style=flat&label=Docker%20pulls" alt="Docker pulls"></a> <a href="LICENSE"><img src="https://img.shields.io/badge/License-Apache%202.0-blue?style=flat" alt="Apache-2.0 license"></a> <a href="https://securityscorecards.dev/viewer/?uri=github.com/msaad00/agent-bom"><img src="https://img.shields.io/ossf-scorecard/github.com/msaad00/agent-bom?style=flat&label=OpenSSF%20scorecard" alt="OpenSSF Scorecard"></a> <a href="https://glama.ai/mcp/servers/msaad00/agent-bom"><img src="https://img.shields.io/badge/MCP-Glama-7c3aed?style=flat" alt="Glama MCP server"></a> <a href="https://smithery.ai/servers/agent-bom/agent-bom"><img src="https://img.shields.io/badge/MCP-Smithery-1f6feb?style=flat" alt="Smithery MCP server"></a> </p> <!-- mcp-name: io.github.msaad00/agent-bom -->

<p align="center"><b>Open security scanner and self-hosted control plane for AI, MCP, and cloud infrastructure.</b></p>

<p align="center"> Scan repositories, images, and cloud accounts; centralize evidence across environments; and enforce AI and MCP runtime policy in infrastructure you control. </p>

<p align="center"> <b>15</b> package ecosystems Β· <b>16</b> compliance surfaces Β· <b>77</b> MCP tools Β· no account required<br /> <a href="#quick-start"><b>Quick start</b></a> Β· <a href="https://msaad00.github.io/agent-bom/">Docs</a> Β· <a href="https://demo.agent-bom.com">Live demo</a> </p>

What it is

agent-bom is an open scanner and self-hosted control plane for software, cloud, identity, AI-agent, and MCP evidence. One Finding + UnifiedGraph model powers CLI and CI artifacts, fleet and browser investigations, compliance evidence, and runtime policy.

Use the scanner without an account, or deploy the shared control plane inside your own cloud, VPC, Kubernetes cluster, database, identity, and audit boundary.

Graph provenance remains explicit: collected, inferred, static, and runtime relationships stay distinct, and unavailable evidence is never upgraded to observed.

<details> <summary><b>Control-plane architecture</b></summary>

<p align="center"> <picture> <source media="(prefers-color-scheme: dark)" srcset="https://raw.githubusercontent.com/msaad00/agent-bom/main/docs/images/architecture-dark.svg"> <img src="https://raw.githubusercontent.com/msaad00/agent-bom/main/docs/images/architecture-light.svg" alt="Sources, evidence engine, control plane, API, MCP, and operator surfaces in the self-hosted agent-bom architecture" width="1000" /> </picture> </p>

</details>

Who it is for

<p align="center"> <picture> <source media="(prefers-color-scheme: dark)" srcset="https://raw.githubusercontent.com/msaad00/agent-bom/main/docs/images/persona-value-dark.svg"> <img src="https://raw.githubusercontent.com/msaad00/agent-bom/main/docs/images/persona-value-light.svg" alt="Developer, AppSec, platform, GRC, and AI or MCP owner workflows on the shared evidence model" width="1000" /> </picture> </p>

| Role | Start here | Primary outcome | |---|---|---| | Developers | agent-bom scan . | Find and explain issues before code leaves the workstation | | AppSec | agent-bom scan . -f sarif -o findings.sarif | Triage reachable findings and enforce CI gates | | Security engineers | pip install 'agent-bom[ui]' && agent-bom serve | Investigate exposure paths, identities, and evidence provenance | | Platform / SRE | agent-bom connect aws | Centralize estate inventory, jobs, and runtime controls | | GRC / audit | agent-bom report compliance-narrative scan.json | Review control mappings and export evidence with explicit gaps | | Leadership / CISO | pip install 'agent-bom[ui]' && agent-bom serve | Review posture, coverage, material risk, and change over time | | AI / MCP owners | pip install 'agent-bom[mcp-server]' && agent-bom mcp server | Inventory tools and apply allow, warn, or block decisions |

AppSec and GRC remain separate workflows: findings and reachability are not presented as audit certification. See product boundaries.

<details open> <summary><b>Product gallery</b></summary>

The gallery uses deterministic sample data, visibly labeled in the UI. It is product-state proof, not customer or advisory evidence.

| Overview | Findings | |:---:|:---:| | <img src="https://raw.githubusercontent.com/msaad00/agent-bom/main/docs/images/dashboard-live.png" alt="Overview with posture, finding, coverage, and operations summaries" width="430" /> | <img src="https://raw.githubusercontent.com/msaad00/agent-bom/main/docs/images/dependency-map-live.png" alt="Findings queue with severity, evidence, and next actions" width="430" /> |

| Investigation | Remediation | |:---:|:---:| | <img src="https://raw.githubusercontent.com/msaad00/agent-bom/main/docs/images/security-graph-live.png" alt="Path-first investigation with provenance-aware synthetic graph evidence" width="430" /> | <img src="https://raw.githubusercontent.com/msaad00/agent-bom/main/docs/images/remediation-live.png" alt="Compact prioritized remediation workflow" width="430" /> |

| Cloud and environment lineage | Agent mesh | |:---:|:---:| | <img src="https://raw.githubusercontent.com/msaad00/agent-bom/main/docs/images/lineage-graph-live.png" alt="Scoped environment lineage with interactive graph controls" width="430" /> | <img src="https://raw.githubusercontent.com/msaad00/agent-bom/main/docs/images/mesh-live.png" alt="Agent and MCP server relationships with labeled edges" width="430" /> |

Capture protocol

</details>

Quick start

Run against the repository in your current directory:

pip install agent-bom
agent-bom scan .

The console shows inventory, findings, and reachable impact. Save an artifact with agent-bom scan . -f sarif -o findings.sarif, or follow the first-run guide for exit codes, formats, and CI use.

<details> <summary><b>Try without a repository</b></summary>

Use the curated, explicitly synthetic sample when you only want to inspect the output shape:

agent-bom scan --demo --offline

The sample intentionally contains blocking findings, so exit status 1 is expected.

<p align="center"> <img src="https://raw.githubusercontent.com/msaad00/agent-bom/main/docs/images/demo-latest.gif" alt="Synthetic agent-bom console scan showing inventory, findings, and remediation" width="820" /> </p>

</details>

Self-host

Start the loopback control plane:

pip install 'agent-bom[ui]'
agent-bom serve

For a shared deployment, use the documented Docker or Helm path and configure real identity, TLS, PostgreSQL, encryption, and audit keys before exposing it.

| Target | Start here | |---|---| | Docker Compose | Pilot compose | | Helm / Kubernetes | helm install agent-bom oci://ghcr.io/msaad00/charts/agent-bom --version 0.98.2 | | EKS | Terraform module | | Snowflake SPCS / Native App | scripts/deploy/install.sh snowflake-native Β· install guide | | Air-gapped | Image bundle guide |

Examples target this release candidate; confirm release availability before copying an exact pin. Otherwise, use the latest version shown on PyPI.

Deployment overview Β· Enterprise configuration Β· Cloud connections

<details> <summary><b>Advanced integrations and runtime entry points</b></summary>

| Need | First action | Artifact or next step | |---|---|---| | GitHub CI | uses: msaad00/agent-bom@v0.98.2 | SARIF, PR summary, and a policy exit code | | Cloud evidence | agent-bom connect aws | Stored connection reference; run scans from the control plane | | Runtime gateway | agent-bom gateway serve --from-control-plane http://127.0.0.1:8422 --bind 127.0.0.1:8090 | Allow, warn, and block audit events | | Agent interface | agent-bom mcp server | 77 MCP tools, 6 resources, and 8 workflow prompts | | Agent distribution | Smithery manifest Β· Glama Β· MCP registry Β· Docker MCP | Registry-specific installation metadata |

MCP server mode exposes 77 MCP tools, 6 resources, and 8 workflow prompts, all read-first: discovery and analysis never mutate a scanned target.

The CLI, Docker, API, Helm chart, MCP server, gateway, and SDK are distribution surfaces of the same product. The Snowflake SPCS / Native App lane runs inside the customer's Snowflake account; it is a customer-owned deployment target, not an agent-bom-hosted service. Snowflake and Snowpark also remain connector and runtime integrations for the other deployment profiles.

</details>

<details> <summary><b>Every way to install it</b></summary>

| Surface | Get it | |---|---| | Python package | pip install agent-bom β€” PyPI | | Container | docker pull agentbom/agent-bom β€” Docker Hub | | Kubernetes | helm install agent-bom oci://ghcr.io/msaad00/charts/agent-bom | | GitHub Action | msaad00/agent-bom | | MCP server | pip install 'agent-bom[mcp-server]' && agent-bom mcp server | | MCP registries | Smithery manifest Β· Glama Β· MCP registry Β· Docker MCP | | SDKs | Python Β· TypeScript Β· Go |

</details>

Trust

  • Read-only discovery by default; runtime write decisions are separate and explicit.
  • Credentials are write-only where stored, encrypted at rest, and never returned by API responses.
  • API and control-plane routes are tenant scoped and auth protected outside explicit local mode.
  • Missing evidence is shown as unavailable or partial, never converted into a factual zero.
  • Public examples and screenshots use deterministic synthetic identifiers only.

Threat model Β· Release verification Β· Security policy Β· MCP security model

Contributing

Start with CONTRIBUTING.md, AGENTS.md, and the open issues.

Apache-2.0 licensed.

See related servers & alternatives β†’

Related MCP servers

Browse all β†’

Related guides

Hand-picked reading to help you choose and use AI & ML servers.