Model Context Protocol security
See what a tool description is really telling your agent.
Point this at an MCP endpoint. It reads every tool the server exposes, checks the descriptions and schemas for planted instructions, then runs a live agent against the server with poisoned tool output to see whether the agent obeys.
Live probes send hostile text to the server you name and call its tools for real. Run them against servers you own or have permission to test.