# Toolguard

> Use this tool when you need to secure and monitor AI agent interactions with external tools, ensuring only approved tool-calls are executed and scanning for potential security vulnerabilities. Toolguard provides a runtime allowlist and policy framework, enabling real-time security scanning and alerts for issues such as TODO, FIXME, and XXX findings. It is ideal for use cases requiring enhanced security and compliance in AI agent deployments.

Canonical page: https://skillsregistry.net/skills/cognis-digital-toolguard  
JSON: https://api.skillsregistry.net/v1/skills/cognis-digital-toolguard

## Description

Runtime allowlist and policy for agent tool-calls, enabling security scanning (e.g., TODO/FIXME/XXX findings) via MCP for AI agents.

## Trust

- **Trust score (0–1):** 0.60
- **Verification tier:** unverified

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** ai-ml
- **Updated:** 2026-06-28

## Source

- **Source listing:** [Glama](https://glama.ai/mcp/servers/xa1q6k0z75)
- **Repository:** <https://github.com/cognis-digital/toolguard>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "cognis-digital-toolguard"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/cognis-digital-toolguard` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/cognis-digital-toolguard/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
