← Back to Claude Tool Reviews

Snyk Agent Scan

Skill Security Solid

Auto-discovers agent configurations across Claude Code, Cursor, Gemini CLI, and Windsurf. Detects 15+ security risks including prompt injection, tool poisoning, and toxic flows.

2,101 starsApache-2.0 (commercial OK)FreeQuick setup
Official tool maintained by Snyk.

Major security vendor (Snyk) backing gives enterprise credibility. Auto-discovers all agent configurations on a machine and scans skills and MCP servers.

Security teams responsible for approving AI tools across developer workstations.

Claude Code Claude Cowork Claude Chat

https://github.com/snyk/agent-scan

By Snyk

How to Get It

Option 1: Claude Desktop App (Code Mode)Click the + button next to the prompt box → PluginsAdd plugin. Search and click Install. Skills work in Claude Code only.
CostFree

Trust Signals Automated Scan

Stars2,101Contributors13Last updated2026-04-10LicenseApache-2.0 (OK for commercial use)Known CVEsNone found

Data & Access

Data processingPrompts sent to Anthropic API. Enterprise/Team plans exclude training.Connects toSnyk servers (official integration)

Community Pulse Active

Discussed on Hacker News, Reddit

29 mentions across 2 sources

Reviewer notes

Automated Scan review. These are observations, not a security certification.

Official Snyk product. Enterprise-grade security scanner.

How to evaluate tools before deploying →

Data shown here comes from public APIs and automated scanning. Reviewer notes reflect one person's experience. This is not a security certification or legal recommendation. Always evaluate tools according to your own organization's policies.

Evaluation

Ease of Use
4/5
Versatility
3/5
Reliability
4/5
Security
5/5
Overall score3.90 / 5.00 SolidEvaluatedApr 2026

← Back to Claude Tool Reviews