Security Overview DASHBOARD PREVIEW

Last scan: 4 minutes ago · Next scheduled: 2h 56m · 37 agents across 6 repositories

Total Agents +3 this week
37
Overall Risk -4 pts
62/100
Critical Findings
4
Compliance Score
71%

Risk Distribution

62/100 MEDIUM
Low (10) Medium (14) High (9) Critical (4)

Agent Inventory

37 agents · 6 repos
AgentFrameworkRiskToolsGuardrailsAutonomyLast Scan
CustomerSupportBot LangChain 92 12 1 T4 4m ago
PaymentProcessor Custom Agent 88 6 2 T4 4m ago
DataPipelineAgent CrewAI 74 8 3 T3 4m ago
CodeReviewBot Anthropic MCP 52 4 5 T2 4m ago
OnboardingAssistant OpenAI Assistants 45 3 4 T2 4m ago
FAQResponder Vercel AI SDK 18 1 6 T1 4m ago

Critical Findings

4 critical · 9 high
CRIT

CustomerSupportBot can execute system commands

Agent has subprocess access without allowlisting. Blast radius: full system.

NIST AI RMF: GOVERN 1.7 · OWASP A01
CRIT

PaymentProcessor has admin-level permissions

Agent operates with elevated privileges on payment database.

NIST AI RMF: MANAGE 4.1 · ISO 42001 A.8.4
HIGH

5 agents lack input validation

No prompt injection protection detected on 5 of 37 agents.

OWASP Agentic A02 · NIST MANAGE 2.2
HIGH

DataPipelineAgent missing audit trail

No logging detected for agent decisions or tool invocations.

EU AI Act Article 12 · ISO 42001 A.8.5
MED

3 agents exceed 10-tool threshold

Excessive tool access increases attack surface and blast radius.

NIST AI RMF: MAP 1.1

Compliance Readiness

4 frameworks

NIST AI RMF

78%

ISO/IEC 42001

64%

EU AI Act (High-Risk)

41%

OWASP Agentic Top 10

56%

Recent Activity

New agent detected: InvoiceProcessor 12m ago
Risk increase: CustomerSupportBot 78 → 92 2h ago
Guardrail added: OnboardingAssistant 1d ago
Scan completed: acme-platform repo 1d ago
New finding: Missing audit trail on DataPipeline 2d ago