Smolagents
Security Scanner
HuggingFace's lightweight agents library. CodeAgent and ToolCallingAgent support.
What Inkog Detects in Smolagents
Smolagents-specific vulnerability patterns that traditional security tools miss.
Infinite Loop Detection
CRITICALSmolagents agents without iteration bounds can run indefinitely, consuming API tokens until limits are hit.
Prompt Injection Paths
CRITICALUser inputs flowing to LLM prompts without sanitization in Smolagents workflows create injection vulnerabilities.
Token Bombing
HIGHUnbounded loops in Smolagents agents accumulate LLM API costs that can reach thousands of dollars.
Missing Human Oversight
HIGHHigh-risk tool calls in Smolagents agents without human approval gates violate EU AI Act Article 14.
Smolagents Analysis Features
- CodeAgent analysis
- ToolCallingAgent checks
- ManagedAgent validation
- Code execution safety
Get Started
Scan your Smolagents application in seconds.
Run the scanner
inkog scan ./my-smolagents-appReview findings
Inkog traces data flow through your Smolagents code and reports vulnerabilities with severity levels and line numbers.
Fix and verify
Apply the suggested fixes based on severity and re-scan to verify.
Smolagents Compliance Reports
Automated mapping to global AI governance frameworks.
EU AI Act
Article 14, 15, 12
NIST AI RMF
MAP/MEASURE/MANAGE
OWASP LLM
Top 10 Coverage
ISO 42001
AI Management
Scan Your Smolagents Application
Free for developers. Results in 60 seconds.