Open Source Tool Scans Enterprise Instances for Shadow AI Agents
bammcd_builds · reddit · 2026-08-11
Noting that most enterprise AI governance frameworks assume an inventory that doesn't actually exist, a developer built and open-sourced AgentCensus, a read-only scanner for ServiceNow.
Using rule-based detection rather than model judging, the tool inventories AI agents, tools, and credentials running on an instance. A single live scan uncovered 7 unregistered 'shadow' agents (scripts quietly calling models) and an ownerless credential.
The author specifically highlights that as MCP (Model Context Protocol) adoption accelerates, unregistered MCP servers and tool integrations will become the next major governance blind spot, mirroring the exact same problem at a different layer.
More from coding & agent
- Open-Source Tool 'human-blocker' Lets AI Agents Escalate to Humans When Blocked — amankhan · 2026-08-11
- The Clanker Constitution: Default Operating Principles for Coding Agents — ricklamers · 2026-08-11
- 2026 AI Predictions: Agents Reshape UX, SaaS Declines, and toA Ecosystem Emerges — yangyi · 2026-08-11
- 3 Engineering Lessons from Building Multi-Turn Conversational Agents with Claude API — Intrepid4 · 2026-08-11
- Developer Rants: Coding with AI is Like Cat and Mouse, More Time-Consuming Than Manual Coding — BLUECOW009 · 2026-08-11
- Test: Claude Opus Generates Stunning Three.js 3D Car Graphics — ChrisGPT · 2026-08-11