Overview
Bundle D: Agentic Attack Surface is built for the emerging risk of AI-agent-driven attacks. It includes MCP registry risk scoring (detecting typosquatted or newly-registered AI agent tool servers), prompt-injection breach correlation (surfacing exposed sessions tied to prompt-injection attacks via infostealer log analysis), agent-framework CVE targeting risk (CVE exposure scoped to your declared agent stack, LangChain, AutoGPT, CrewAI, and similar), bulk per-agent identity risk scoring across up to 10 domains and 5 agents each, purpose-built for AI governance programs and MSP client sweeps, and LLM credential exposure detection to detect exposed LLM/AI provider API keys (OpenAI, Anthropic, Google, Groq, xAI, Replicate) in criminal stealer logs.
All endpoints are backed by RelayShield's live threat intelligence corpus: 4.4M+ indicators of compromise, 3,750+ malware families, and 83+ monitored criminal Telegram marketplaces. Your API key is issued automatically by email when your AWS Marketplace subscription activates, with full usage instructions included. All access is provisioned and billed through AWS Marketplace.
Highlights
- Each bundle is licensed independently through AWS Marketplace, with no dependency on any other bundle or platform-wide subscription.
- Contract-with-consumption pricing: a minimum monthly commitment covers included usage, with transparent per-call pricing for anything above that baseline.
- Backed by RelayShield's live threat intel corpus: 4.4M+ IOCs, 3,750+ malware families, 83+ monitored criminal Telegram marketplaces.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Dimension | Description | Cost/month |
|---|---|---|
Agentic Attack Surface - Monthly Access | Monthly minimum commitment for Agentic Attack Surface API access: agent identity risk scoring, agent framework exploit monitoring, MCP registry risk, prompt injection breach detection, and LLM credential exposure detection. | $299.00 |
The following dimensions are not included in the contract terms, which will be charged based on your usage.
Dimension | Description | Cost/unit |
|---|---|---|
Agent Identity Risk Score | Risk scoring for AI agent identities across breach, infostealer, and session exposure. | $2.00 |
Agent Framework Exploit Monitoring | Cross-references your tech stack against known and emerging CVEs affecting AI agents. | $0.20 |
MCP Registry Risk | Flags malicious, typosquatted or newly registered MCP servers and tool registries. | $0.35 |
Prompt Injection Breach Detection | Detects credential and session exposure from prompt injection attacks on AI agents. | $0.35 |
LLM Credential Exposure Detection | Detects exposed LLM/AI provider API keys (OpenAI, Anthropic, Google, etc) in stealer logs. | $0.40 |
Vendor refund policy
The monthly minimum commitment and metered usage charges are billed in arrears and are generally non-refundable once incurred. RelayShield will issue a full or partial refund for verified billing errors, duplicate charges, or a service outage attributable to RelayShield. To request a refund, contact us at support.relayshield.net within 30 days of the disputed charge.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
API-Based Agents & Tools
API-Based Agents and Tools integrate through standard web protocols. Your applications can make API calls to access agent capabilities and receive responses.
Additional details
Usage instructions
Connecting Point your MCP client at: https://relayshieldadmin-relayshield-agentic-attack-surface-aws.hf.space/gradio_api/mcp/sse
No account-level secret is required to connect. Each tool call takes your RelayShield API key as a parameter, so you're only billed for the calls you make.
Tools check_mcp_server_risk Checks an MCP server URL for typosquat risk, presence in RelayShield's criminal IOC corpus, and domain-registration age. Returns CRITICAL/HIGH/MEDIUM/LOW with findings. Params: server_url, api_key
check_prompt_injection_breach Checks an email for credential exposure sourced specifically from prompt-injection attacks against AI agents, distinct from ordinary phishing/malware breaches. Params: email, api_key
check_tech_stack_cve Checks a declared AI agent framework / tech stack for CISA KEV or high-EPSS CVEs currently being exploited. Params: tech_stack (comma-separated, e.g. "langchain, nacos, minio"), api_key
check_bulk_identity_risk Hierarchical org + AI-agent-identity risk scoring for a domain and up to 5 agent/service-account identities. A critically-exposed agent elevates the org's overall rating. Params: domain, agent_emails (comma-separated, up to 5), api_key
check_llm_credential_exposure Checks a domain for exposed LLM/AI provider API keys (OpenAI, Anthropic, Google, Groq, xAI, Replicate) in criminal stealer logs from LLMjacking, where a leaked key becomes a live, uncapped billing liability. Params: domain, api_key
Getting an API key Your API key is generated automatically and emailed to you when your AWS Marketplace subscription activates. No separate signup step is required.
Support
Vendor support
Email support: support@relayshield.net . Full API documentation, authentication steps, endpoint URLs, and sample requests are included in this product's Usage Instructions. Response within 1 business day for standard issues.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.