AVE Agentic Vulnerability Enumeration
Open standard · Apache 2.0

The CVE for AI agents

A behavioral vulnerability standard for skill files, MCP servers, and the agent components the package world cannot see.

AVE is an open standard. The records describe behavior, not packages — so any scanner can map to them. Reference implementation: Bawbel scanner. Build your own →

12
Records
v1.1
Schema
4
Frameworks mapped
0.8
AIVSS spec

Contribute a new agentic flaw standard

Found a behavioral vulnerability class the registry does not cover? AVE grows through peer review. Propose a record with a behavioral fingerprint, a detection rule, and positive plus negative fixtures.

Read the guide →