← All free tools

Agent Provenance

Agent Provenance Scanner

Find the unpinned agent stack hiding in your repo. Scan instructions, MCP config, model policy, sensitive paths, CI drift checks, and runtime receipt gaps.

agent supply chain

Scan your repo for hidden agent provenance risk

Runs entirely in your browser. Nothing is uploaded to Kurral. Scans up to 500 files for instruction files, MCP config, model policy, sensitive paths, drift checks, and runtime receipt gaps.

Other ways to scan

your supply chain · preview

What this scan will surface

Developers
AI tools
Models
Rules
MCP
Actions
PR

Pick a folder or load sample data. The report names detected surfaces, unpinned risks, missing drift checks, and drafts an agent.lock for the parts that should be pinned.