Free · agentless · reach out for a copy

See every AI tool
already running
on your network

Privify SCOUT is a freely downloadable discovery scanning tool that finds shadow AI across your endpoints and local network in minutes — CLI tools, browser extensions, MCP servers, local models, leaked API keys and more.

13
Surfaces scanned
0
Agents installed
<5
Minutes to a report
$0
Cost to run
privify-scout — discovery scan scanning…
Report generated — 8 of 13 surfaces active
Finds shadow usage of
OpenAI Anthropic Google Gemini Ollama LM Studio Model Context Protocol GitHub Copilot Cursor Continue
How it works

Point it at a machine. Get a report.

SCOUT runs as your own user — no root, no admin rights, no software left behind. Run it on one laptop, or point it at your local subnet to see every endpoint at once.

01 /

Scan

13 surfaces, checked in sequence: CLI tools, environment and file-based API keys, MCP servers, IDE extensions, local model servers, running processes, Python and npm packages, shell and browser history, Docker containers, and your local subnet.

  • Agentless — reads what's already on the machine
  • No account, no cloud upload — everything runs locally
  • Point it at one subnet, or your whole LAN
02 /

Correlate

Findings are grouped by surface and cross-referenced — an API key in a shell history next to a CLI tool next to an unauthenticated MCP server tells a very different story than any one of them alone.

  • Every finding is scored for risk, not just listed
  • Duplicate signals collapse into one entity
  • Runs entirely on the machine you scan
03 /

Report

An interactive report — not a spreadsheet. Findings render as connected, explorable views you can walk through with whoever needs convincing there's a gap.

  • Self-contained HTML, shareable in one file
  • No data leaves the machine unless you send it
  • Free, every time — no report is metered
The first scan is the argument

You already know
some of this is true.

Most teams can name three or four AI tools people use. SCOUT's first run on a single laptop routinely finds several times that — API keys sitting in shell history, an unauthenticated MCP server, a model running locally that nobody provisioned.

What IT has on record
3approved tools
What one scan finds
8of 13 surfaces active
3 MCP servers · 1 unauthenticated

Representative first-scan result, from a single unmanaged laptop.

Coverage

13 surfaces. One free scan.

Every place shadow AI actually hides on an endpoint and the network around it.

CLI Tools

claude, copilot, gemini and other AI CLIs installed on the machine

API Keys (env)

Provider keys sitting in environment variables

API Keys (files)

Keys committed to config files and dotfiles

MCP Servers

Model Context Protocol servers, and which ones ship without auth

IDE Extensions

Copilot, Cursor, Continue and other AI coding extensions

Local AI Servers

Ollama, LM Studio and other local model runtimes

Running Processes

AI-related processes active right now

Python Packages

anthropic, openai, langchain and similar libraries installed

npm Packages

AI SDKs pulled into JavaScript projects

Shell History

Past commands that invoked an AI tool or model

Browser History

Visits to AI chat and API console domains

Docker Containers

Containers running model servers or AI tooling

Network Scan

Every reachable host on the subnet, probed for AI ports and MCP endpoints

Try it

Free. No install. Nothing to configure.

Three steps, no infrastructure changes, nothing to configure once you have it.

1

Download

Download it below — a single binary, no Python or dependencies required.

2

Run one command

Scans the local machine by default, or point it at a subnet with a single flag.

3

Open the report

An interactive, self-contained HTML report — open it, walk through it, share it.

Free — every time you run it

Find out what's actually running.

Point Privify SCOUT at a laptop or a subnet and see, in minutes, what your inventory has been missing. No cost, no commitment — reach out and we'll send you a copy.

Download

No spam. No sales calls without consent.

Nothing scanned leaves the machine
Free, every run
Report in under 5 minutes