# Scan repositories for AI supply-chain and agent-security risks with Medusa Security

> Use Medusa Security before trusting a repository, dependency, or AI-agent codebase when an agent needs a focused scan for repo poisoning, prompt-injection, MCP, and AI supply-chain findings.

- Skill: `agentskillexchange/scan-repositories-for-ai-supply-chain-and-agent-security-ris` (Agent Skill)
- Install (CLI): `npx skillmds@latest add agentskillexchange/scan-repositories-for-ai-supply-chain-and-agent-security-ris`
- Raw SKILL.md: https://api.skillmd.com/api/skills/agentskillexchange/scan-repositories-for-ai-supply-chain-and-agent-security-ris/raw
- Safety review: pending (external: skill-scanner PASS, skillspector PASS)
- Works with: Claude Code, Claude.ai, OpenAI Codex
- Category: AI & ML
- Author: agentskillexchange (https://skillmd.com/u/agentskillexchange)
- Updated: 2026-09-08
- Page: https://skillmd.com/skills/agentskillexchange/scan-repositories-for-ai-supply-chain-and-agent-security-ris

---


# Scan repositories for AI supply-chain and agent-security risks with Medusa Security

Use Medusa Security before trusting a repository, dependency, or AI-agent codebase when an agent needs a focused scan for repo poisoning, prompt-injection, MCP, and AI supply-chain findings.

## Prerequisites

Python 3.10+, pip, local repository path or remote Git URL

## Installation

Use the upstream install or setup path that matches your environment:
- pip install medusa-security
- git clone https://github.com/yourusername/medusa.git
- pip install -e ".[dev]"

Requirements and caveats from upstream:
- [![Python](https://img.shields.io/badge/python-3.10%2B-blue.svg)](https://www.python.org/downloads/)
- | --quick | Quick scan (changed files only, requires git) |
- name: Set up Python

Basic usage or getting-started notes:
- ## 🚀 Quick Start
- bash
- # Run your first scan - that's it!

- Source: https://github.com/Pantheon-Security/medusa
- Extracted from upstream docs: https://raw.githubusercontent.com/Pantheon-Security/medusa/HEAD/README.md

## Documentation

- https://docs.medusa-security.dev

## Source

- [Agent Skill Exchange](https://agentskillexchange.com/skills/scan-repositories-for-ai-supply-chain-and-agent-security-risks-with-medusa-security/)

