Dev.to
7/5/2026

AgentGuard vs Semgrep vs CodeQL: 100 Percent vs 0 Percent on AI Agent Security
Short summary
AgentGuard achieved 100% detection on 39 AI agent security samples with zero false positives while Semgrep and CodeQL detected nothing, exposing a critical gap in existing tooling. The scanner's 17 rules cover OWASP ASI categories plus four novel vectors (Memory Poisoning, Tool Output Trust, Action Chain Amplification, Multi-Agent Collusion), uncovering 332 critical vulnerabilities in AutoGen and LlamaIndex. Available via GitHub and PyPI.
- •AgentGuard detected 100% of AI agent security issues vs 0% for Semgrep and CodeQL
- •17 detection rules covering OWASP ASI plus 4 novel attack vectors
- •Found 332 critical vulnerabilities in AutoGen and LlamaIndex frameworks
Generated with AI, which can make mistakes.
Is this a good recommendation for you?



