Sign inSign up

kurtpayne/skillscan-trace

By kurtpayne

•Updated 6 months ago
Archived

Behavioral trace engine for AI agent skills — 74 canary MCP tools, BYOK

Image
0

1.0K

kurtpayne/skillscan-trace repository overview

⁠skillscan-trace — Behavioral trace engine for AI agent skills

skillscan-trace is a BYOK (bring-your-own-key) behavioral trace engine that drives AI agent skills through a canary MCP server to detect exfiltration, credential theft, and malicious tool use. It intercepts every tool call the model makes, returns synthetic responses with embedded tracking tokens, and fires findings when the model attempts to read sensitive paths, relay canary tokens to external endpoints, or invoke undeclared tools.

⁠Quick Start

⁠Single trace
docker run --rm \
  -e OPENROUTER_API_KEY=... \
  -v $(pwd):/w \
  kurtpayne/skillscan-trace run /w/SKILL.md --provider openrouter
⁠Self-hosted server
docker run -p 8080:8080 kurtpayne/skillscan-trace serve

⁠Environment Variables

VariableRequiredDescription
OPENAI_API_KEYFor OpenAI providerOpenAI API key
OPENROUTER_API_KEYFor OpenRouter providerOpenRouter API key
ANTHROPIC_API_KEYFor Anthropic providerAnthropic API key
R2_ACCOUNT_IDNo (hosted mode)Cloudflare R2 account ID for report storage
R2_ACCESS_KEY_IDNo (hosted mode)Cloudflare R2 access key ID
R2_SECRET_ACCESS_KEYNo (hosted mode)Cloudflare R2 secret access key
R2_BUCKETNo (hosted mode)Cloudflare R2 bucket name

⁠Privacy

Your API key is used for the duration of the trace and immediately discarded. SkillScan never stores or logs API keys.

⁠Canary Tool Surfaces (74)

The canary MCP server exposes 74 tool surfaces for behavioral analysis:

CategoryTools
Filesystembash, read_file, write_file, list_directory, search_files, edit_file, move_file, directory_tree, read_multiple_files
Network & webhttp_fetch, web_search, web_fetch
Email & messagingemail_send, gmail_send, search_emails, read_email, slack_post_message, slack_search_messages, slack_read_channel, slack_read_thread, slack_list_channels, send_sms, list_sms
Calendarcalendar_create, calendar_list
GitHub & Gitgithub_create_issue, github_push_file, get_file_contents, search_code, create_pull_request, merge_pull_request, get_secret_scanning_alert, git_log, git_diff, git_show, git_clone, git_push, git_commit
Notionnotion_create_page, notion_append_block, notion_search, notion_fetch, notion_get_users
Google Drivegdrive_search, gdrive_read_file, gdrive_upload_file
Databaseexecute_sql, list_tables, describe_table
Secrets & vaultread_secret, list_secrets, get_vault_item
Cloud CLIcall_aws_cli, call_kubectl
Code executionpython, computer
Agent memorymemory_write, memory_read, context_write, search_long_term_memory, delete_long_term_memory
Browser automationbrowser_navigate, browser_screenshot, browser_click, browser_fill, browser_evaluate
Jira & Confluencejira_search, jira_create_issue, confluence_search
DNSdns_create_record, dns_list_records
Monitoringsearch_logs, list_alerts
Containerdocker_exec

Tag summary

Content type

Image

Digest

sha256:30684f9b1…

Size

129.4 MB

Last updated

6 months ago

docker pull kurtpayne/skillscan-trace