Product Roadmap
See where Vigile is headed. Updated monthly.
Shipped
Static Analysis Engine — 220+ Detection Checks
Feb 2026Full pattern-matching scanner covering tool poisoning, exfiltration, obfuscation, permission abuse, and instruction injection across MCP servers and agent skills.
Trust Scoring — 5-Factor Composite Model
Feb 2026Code analysis, dependency health, permission safety, behavioral stability, and transparency weighted into a 0-100 trust score.
MCP Server Registry — Hundreds of Servers Indexed
Feb 2026Automated crawling from npm, Smithery, PyPI, and GitHub. Community reports and trust score lookup.
Agent Skill Scanning — 32 Skill Patterns
Feb 2026Detect injection, malware delivery, stealth behavior, and exfiltration in SKILL.md and .mdc files.
vigile-mcp — MCP Server Distribution
Feb 2026Query trust scores and scan servers directly from Claude Code, Cursor, or any MCP client.
BaaS Security Scanner — Supabase & Firebase
Mar 2026Detect RLS misconfigurations, exposed credentials, insecure rules, and missing security headers on Supabase and Firebase projects.
In Progress
Sentinel — Runtime Monitoring Globe
ETA Mar 2026Live 3D visualization of global MCP server activity. WebSocket event stream, threat tracers, and real-time alerting.
Vigile GitHub Action
ETA Mar 2026Scan MCP servers and agent skills in CI/CD. Block PRs that introduce security regressions.
SARIF Output Format
ETA Mar 2026Export scan results as SARIF for integration with GitHub Code Scanning, VS Code, and other SARIF-compatible tools.
Embed Widget — Trust Badge for Websites
ETA Mar 2026Embeddable trust score badge in 4 variants (standard, compact, wide, badge). Show your server's trust score on any page.
Planned
Sentinel Fleet Management
Q2 2026Monitor multiple MCP server deployments from a single dashboard. Concurrent session monitoring, alert routing, and fleet-wide trust scores.
Webhook & Slack Integrations
Q2 2026Push scan results and Sentinel alerts to Slack channels and custom webhooks. Pro+ feature.
Custom Detection Patterns
Q2 2026Write your own detection rules and run them alongside Vigile's built-in patterns. Pro feature.
Location Guard — Geofence Verification
Q3 2026Verify that agents operating in physical contexts are where they claim to be. Trust-adjusted risk scoring for location-dependent transactions.
Template Marketplace
Q3 2026Pre-verified security configurations for Supabase, Firebase, MCP servers, and CI pipelines. Community-contributed, Vigile-scanned.
Have a feature idea?
We prioritize based on community feedback. Let us know what matters most.