Item logo image for Trappr — AI Agent Security

Trappr — AI Agent Security

ExtensionDeveloper Tools
Item media 6 (screenshot) for Trappr — AI Agent Security
Item media 1 (screenshot) for Trappr — AI Agent Security
Item media 2 (screenshot) for Trappr — AI Agent Security
Item media 3 (screenshot) for Trappr — AI Agent Security
Item media 4 (screenshot) for Trappr — AI Agent Security
Item media 5 (screenshot) for Trappr — AI Agent Security
Item media 6 (screenshot) for Trappr — AI Agent Security
Item media 1 (screenshot) for Trappr — AI Agent Security
Item media 1 (screenshot) for Trappr — AI Agent Security
Item media 2 (screenshot) for Trappr — AI Agent Security
Item media 3 (screenshot) for Trappr — AI Agent Security
Item media 4 (screenshot) for Trappr — AI Agent Security
Item media 5 (screenshot) for Trappr — AI Agent Security
Item media 6 (screenshot) for Trappr — AI Agent Security

Overview

Scan the AI agent workflow you have open for prompt injection, exposed webhooks and hardcoded credentials.

Trappr finds security problems in AI agent workflows before they reach production. Open a workflow in n8n and click the Trappr button that appears on the page. The extension reads the workflow from the tab you are already working in and returns a scored report, so you do not have to export a file or paste JSON into another tool. WHAT IT CHECKS Every scan scores the workflow across four areas and explains each finding: Identity and access — webhook endpoints that accept requests without authentication, and credentials that are shared more broadly than the workflow needs. Data protection — API keys and secrets written directly into nodes instead of being referenced from a credential store, and sensitive fields that are sent to a third-party model without masking. Execution safety — paths where untrusted input can reach a language model or a code node, and code nodes that evaluate input dynamically. Visibility — steps that run with no logging or alerting, so a failure or a compromise would go unnoticed. Each finding names the node it came from and what to change to resolve it. HOW SCANNING WORKS ON EACH PLATFORM One-click scanning directly from the page is available for n8n, on both n8n-hosted and self-hosted instances. On Make, Dify and LangFlow the extension recognises the page and shows you the export step for that editor. You then drop the exported file into the popup and it is scanned the same way. Python agent projects can be scanned by dropping a single .py file or a project .zip into the popup. WHAT HAPPENS TO YOUR WORKFLOW Workflows are sent to the Trappr API over HTTPS to be analysed, and the report is returned to the popup. The extension only reads a page when you ask it to scan, and only on the automation platforms listed above. A Trappr account is not required to run a scan. Signing in links scans to your dashboard so you can keep a history, re-scan after changes, and receive alerts.

Details

  • Version
    1.1.2
  • Updated
    October 9, 2026
  • Offered by
    Trappr
  • Size
    35.54KiB
  • Languages
    English
  • Developer
    Email
    trappr.security@gmail.com
  • Non-trader
    This developer has not identified itself as a trader. For consumers in the European Union, please note that consumer rights do not apply to contracts between you and this developer.

Privacy

Manage extensions and learn how they're being used in your organization

Trappr — AI Agent Security has disclosed the following information regarding the collection and usage of your data. More detailed information can be found in the developer's privacy policy.

Trappr — AI Agent Security handles the following:

Authentication information
Website content

This developer declares that your data is

  • Not being sold to third parties, outside of the approved use cases
  • Not being used or transferred for purposes that are unrelated to the item's core functionality
  • Not being used or transferred to determine creditworthiness or for lending purposes
Google apps