tanav.aiScanLeaderboardResearchBlogGet Started
Open appTry free scan →
Capability

AI-SPM

You can't manage AI security posture you can't measure.

risk posture dashboard · 1,113 repos · org-level vieworg posture61/ 100 · degrading ↓score breakdownCVE72%Secret100%Auth40%Tool60%Skill100%repositoryscorecriticaltrendSignificant-Gravitas/AutoGPT803garrytan/gstack832screenpipe/screenpipe771modelcontextprotocol/server-git650anthropics/claude-code120
0–100
deterministic risk score
22
scanner modules
CRITICAL=80
score floor rule
Capability
One deterministic score. Every point explained.

AISS scores every AI artifact 0–100. CRITICAL finding → floor at 80. Weighted by category. Every point traces to a checker ID and evidence line. No ML, no black box.

Deterministic: CVE 40%, Secret 30%, Auth 15%, Tool 10%, Skill 5%
CRITICAL floor rule: any CRITICAL finding → score ≥ 80
Fleet posture view across all org repos
Score breakdown per category on every report
risk posture dashboard · 1,113 repos · org-level vieworg posture61/ 100 · degrading ↓score breakdownCVE72%Secret100%Auth40%Tool60%Skill100%repositoryscorecriticaltrendSignificant-Gravitas/AutoGPT803garrytan/gstack832screenpipe/screenpipe771modelcontextprotocol/server-git650anthropics/claude-code120
How it works
01
Connect your GitHub org
OAuth in 30 seconds. AISS discovers every MCP server, skill file, hook, and agent config across all repos.
02
22 modules scan in parallel
CVE lookup, secret scanning, auth checking, tool description analysis, skill file parsing — all concurrent, all hand-written.
03
LLM verifies high-severity
Critical and high findings go to an LLM verifier before reporting. No false positives reach your CISO.
04
Gate, alert, or export
Block in CI via SARIF. Send to SIEM via NDJSON. Export CycloneDX SBOM. Enforce allowlist/blocklist policy.
Press coverage
VentureBeat
Anthropic Skill scanners passed every check. The malicious code rode in on a test file.
VentureBeat
No publicly documented scanner operates outside the assumption that the threat lives in SKILL.md.
CrowdStrike · RSAC 2026
ClawHavoc — 1,184 malicious skills confirmed in the wild. The attack surface is the skill layer.