Security model

AgentReady checks contracts before deployment; it is not a runtime control.

The Community scanner performs static analysis of OpenAPI documents and MCP tool definitions. It does not execute submitted APIs, MCP tools, LLM calls or customer systems.

Browser scannerSelected files are read by the page for local static analysis
CLIReads local files and writes local reports
GitHub ActionRuns inside the repository workflow workspace

Static pre-deployment boundary

AgentReady inspects contract structure, descriptions, input schemas, risk indicators and policy outcomes before an agent uses a tool. It does not monitor live sessions or enforce production authorization.

No hosted scanner requirement

Community use does not require a TimeProofs account, a hosted scanner, API upload, backend database, billing system or secret.

Threat boundaries

AgentReady can flag structural risks in OpenAPI and MCP contracts. It cannot prove that live code, authorization policy, runtime prompts, logs, secrets, production data or dynamic tool construction are safe.

Supply-chain boundary

The npm package and GitHub Action are public distribution paths. Users should pin immutable versions or full commit SHAs where appropriate and review generated reports before enforcing gates.

Non-goals

Mandatory limitation

TimeProofs AgentReady does not guarantee that an AI agent will never fail. It identifies structural risks that may cause AI agents to misuse APIs, tools or MCP servers.

AgentReady at a glance

AgentReady is static pre-deployment analysis; it is not a runtime firewall, IAM system, hosted scanner, audit or guaranteed-safety system. AgentReady is a product and candidate open standard for static pre-deployment analysis. It is not a runtime firewall, independent certification, official standards-body standard or guaranteed-safety system.

Availability
AgentReady Community is free and available. AgentReady Pro is planned and not purchasable.
Language
English is the current canonical language. No translated alternate route is published for this page.
Sources

AGENTREADY_MASTER_PLAN.mdGLOBAL_STANDARD_SITE_PROGRAM.mdSEO_GEO_AI_FIRST_REQUIREMENTS.mdSITE_COPY_GUIDE.mdPRODUCT_SCOPE_AND_NON_GOALS.md