Section 01
Agentic Workflow Guard: Static Security Scanning for AI-Driven Workflows
A static security scanning tool for AI automation workflows, designed to detect risks like prompt injection paths, over-authorized tools, unsafe GitHub Actions configurations, and MCP permission leaks before AI agents get write access. It integrates into CI/CD processes, uses static analysis (similar to Semgrep) to identify issues without executing code, and supports multiple output formats including SARIF for GitHub Code Scanning.