AI Agent Security Checklist
Turn agentic-AI research into an evidence-ready review of authority, untrusted input, delegation, memory, approvals, logging, and recovery.
How to use this tool
The checklist runs entirely in your browser and does not submit your answers.
How to use it
What results mean
What to do next
CheckLink browser extension
Open the current page, inspect links from the browser menu, and jump into CheckLink faster without an account.
Works with Chrome and compatible Chromium-based desktop browsers. Firefox and Safari versions are not currently available.

The extension sends a URL only when you choose a scan action. It does not store scan history.
Research-informed, not research-overstated
The UIUC studies showed that planning, documents, task-specific agents, and tool access changed performance inside controlled vulnerability benchmarks. This checklist translates that observation into defensive questions. It does not reproduce the offensive agents, prompts, or exploit workflows.
For current operational context, NIST describes agent risk in terms of tool permissions and trusted or untrusted environments. Read the NIST tool-access taxonomy and the two source-paper summaries in the CheckLink research hub.