agent-bom Scan
Version updated for https://github.com/msaad00/agent-bom to version v0.86.1.
- This action is used across all versions by 0 repositories.
Action Type
This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary
The GitHub Action “agent-bom” is a security scanner designed for AI supply chains and infrastructure, including packages, containers, cloud environments, GPUs, and runtimes. It identifies vulnerabilities (CVEs) in the AI stack, maps their blast radius to affected components such as MCP servers, connected agents, tools, and exposed credentials, and provides actionable fixes to collapse the vulnerability chain. This tool automates comprehensive security assessments, enabling organizations to mitigate risks efficiently and protect sensitive data.
What’s Changed
What’s Changed
- fix(release): prevent registry serialization tag failures by @msaad00 in https://github.com/msaad00/agent-bom/pull/2304
- Harden gateway and proxy production guards by @msaad00 in https://github.com/msaad00/agent-bom/pull/2305
Full Changelog: https://github.com/msaad00/agent-bom/compare/v0.86.0...v0.86.1