{"audit":{"version":"1.4","generated_at":"2026-08-19T17:09:54.692028+00:00","generated_by":"Agenstry","report_url":"https://agenstry.com/agents/aishield.tools","methodology_url":"https://agenstry.com/methodology","verifier_jwks_url":"https://agenstry.com/.well-known/jwks.json","subject":{"domain":"aishield.tools","name":"AIShield","url":"https://aishield.tools/.well-known/agent-card.json"}},"identity":{"provider":{"organization":null,"url":"https://github.com/lm203688/aishield"},"registry_verification":null,"signature":{"signed":false,"signature_valid":null}},"protocol":{"version":null,"supports_streaming":false,"supports_push_notifications":false},"operational":{"live_state":"endpoint_404","live_responds":false,"last_status_code":200,"last_elapsed_ms":637,"last_error":null},"track_record":{"first_seen":"2026-08-18T00:30:19.592353+00:00","last_checked":"2026-08-19T11:03:50.222185+00:00","last_seen_ok":"2026-08-19T11:03:50.222185+00:00","checks_total":4,"checks_ok":4,"uptime_pct":100.0,"archived":false,"archived_reason":null},"conformance":{"score":24,"grade":"F","summary":"F-grade: card is reachable but fails most operational signals.","criteria":[{"key":"valid_card","label":"Valid AgentCard","points":10,"max_points":10,"status":"pass","detail":"Parseable AgentCard returned by the well-known endpoint (Agenstry readiness signal; not an official TCK certification)."},{"key":"live_responds","label":"Live JSON-RPC","points":0,"max_points":25,"status":"fail","detail":"Card declares a URL but that URL returns 404."},{"key":"protocol_version","label":"Protocol version","points":0,"max_points":10,"status":"fail","detail":"No protocolVersion in card."},{"key":"signature","label":"JWS signature","points":0,"max_points":10,"status":"info","detail":"Card is unsigned (most published agents are)."},{"key":"uptime","label":"Uptime track record","points":0,"max_points":15,"status":"info","detail":"Only 4 probes so far, need ≥5 for an uptime grade."},{"key":"skills","label":"Skill declaration","points":10,"max_points":10,"status":"pass","detail":"Declares 5 skills with structured metadata."},{"key":"verified_identity","label":"Verified Identity","points":0,"max_points":10,"status":"fail","detail":"No provider organisation declared. Anonymous agent."},{"key":"freshness","label":"Freshness + modern flags","points":4,"max_points":5,"status":"pass","detail":"seen in upstream source within 0d"},{"key":"security","label":"Security declaration","points":0,"max_points":5,"status":"info","detail":"Neither securitySchemes nor securityRequirements declared — how to authenticate is unstated."}]},"card_read":{"findings":[{"field":"capabilities","problem":"Input should be a valid dictionary or instance of Capabilities","action":"dropped","detail":"this field was not indexed"}],"clean":false,"source_url":"https://aishield.tools/.well-known/agent-card.json"},"skills":[{"id":"security_scan","name":"MCP 工具安全扫描","description":"基于 OWASP MCP Top 10 的 133 条规则，对 GitHub 上的 MCP 工具/Agent 技能进行静态安全分析，输出 5 维评分和详细发现","tags":[],"examples":[],"inputModes":[],"outputModes":[],"input_schema":{"type":"object","properties":{"source_url":{"type":"string","description":"GitHub 仓库 URL"},"tool_type":{"type":"string","enum":["mcp","skill","gpt","prompt"],"default":"mcp"},"name":{"type":"string","description":"工具名称（可选）"}},"required":["source_url"]},"output_schema":{"type":"object","properties":{"overall_score":{"type":"number","description":"总分 0-100"},"badge_level":{"type":"string","enum":["gold","silver","bronze","none"]},"findings":{"type":"array","items":{"type":"object"}},"owasp_compliance":{"type":"object"}}},"security_certification":{"level":"Level 3","score":95,"issuer":"AIShield","certificate_url":"https://github.com/lm203688/aishield"}},{"id":"prompt_injection_detection","name":"Prompt 注入检测","description":"中英文 Prompt 注入攻击检测，支持拼音变体、谐音替换、拆字攻击、零宽字符等绕过手法识别","tags":[],"examples":[],"inputModes":[],"outputModes":[],"input_schema":{"type":"object","properties":{"prompt":{"type":"string","description":"待检测的 Prompt 文本"}},"required":["prompt"]},"output_schema":{"type":"object","properties":{"safe":{"type":"boolean"},"score":{"type":"number"},"risk_level":{"type":"string"},"findings":{"type":"array"}}}},{"id":"banned_words_detection","name":"中文违禁词检测","description":"覆盖微信、抖音、小红书、B站、知乎、微博 6 大平台规则的中文违禁词/敏感词检测","tags":[],"examples":[],"inputModes":[],"outputModes":[],"input_schema":{"type":"object","properties":{"text":{"type":"string","description":"待检测文本"},"platform":{"type":"string","enum":["all","wechat","douyin","xiaohongshu","bilibili","weibo"],"default":"all"}},"required":["text"]},"output_schema":{"type":"object","properties":{"safe":{"type":"boolean"},"found_count":{"type":"number"},"words":{"type":"array"}}}},{"id":"rug_pull_detection","name":"Rug Pull 检测","description":"检测 MCP 工具是否在近期提交中移除安全代码或添加可疑变更","tags":[],"examples":[],"inputModes":[],"outputModes":[],"input_schema":{"type":"object","properties":{"source_url":{"type":"string","description":"GitHub 仓库 URL"}},"required":["source_url"]},"output_schema":{"type":"object","properties":{"risk_level":{"type":"string"},"suspicious_changes":{"type":"array"}}}},{"id":"mcp_handshake","name":"MCP 握手验证","description":"分析 MCP 配置文件，检测 npx 自动安装、敏感环境变量、超长工具描述等风险，并尝试 HTTP 握手验证","tags":[],"examples":[],"inputModes":[],"outputModes":[],"input_schema":{"type":"object","properties":{"source_url":{"type":"string","description":"GitHub 仓库 URL"}},"required":["source_url"]},"output_schema":{"type":"object","properties":{"handshake_ok":{"type":"boolean"},"warnings":{"type":"array"}}}}],"provenance":[{"source":"mcp_registry","first_seen":"2026-08-18T00:30:19.592353+00:00"}],"recent_probes":[{"fetched_at":"2026-08-19T11:03:50.222185+00:00","ok":true,"status_code":200,"error":null,"elapsed_ms":637,"live_responds":false},{"fetched_at":"2026-08-18T18:00:31.717466+00:00","ok":true,"status_code":200,"error":null,"elapsed_ms":638,"live_responds":false},{"fetched_at":"2026-08-18T06:31:20.188362+00:00","ok":true,"status_code":200,"error":null,"elapsed_ms":839,"live_responds":false},{"fetched_at":"2026-08-18T00:30:19.592353+00:00","ok":true,"status_code":200,"error":null,"elapsed_ms":636,"live_responds":false}],"catalog_attestation":null,"operator_revenue_evidence":{"evidence_class":"operator_submitted","authenticity":{"rung":"no_operator_evidence","rank":0,"why":"No verifiable operator evidence has been submitted for this agent.","thresholds":{"min_independent_payers":3,"min_verified_usd":25.0},"engine_table":"agent_authenticity","merge_rule":"max(existing_rank, rank)"},"metric_metadata":{"provenance":"operator_submitted_evidence","confidence":"attested","coverage":{"numerator":0},"as_of":"2026-08-19T17:09:54.697414+00:00","definition":"Revenue proofs submitted by the verified owner and re-checked by Agenstry against the settlement chain or the operator's own Stripe account. Only independently confirmed proofs are counted."},"counts":{"retained":0,"verified":0,"unverifiable":0},"verified":{"gross_usd":0.0,"transactions":0,"independent_payers":0},"detail_url":"https://agenstry.com/api/agents/aishield.tools/evidence","dispute_url":"https://agenstry.com/agents/aishield.tools/dispute"},"verification_history":[]}