Home/Infra/@eyebrowCC
81
Score · Gem
Scored 1w ago

@eyebrowCC

eyebrow

eyebrow is an AI agent security tool that provides supply chain integrity for AI coding agents (Claude Code, Cursor, Copilot, etc.). It discovers, locks, and verifies skills, MCP servers, plugins, and hooks installed on developer machines, detecting drift and unauthorized changes before execution. The project has shipped v0.5.1 with a working CLI tool (brew installable), is developing an API for enterprise integration, and has deployed a token ($BROW) on Ethereum mainnet. The team is actively attending cybersecurity conferences (GISEC) and working with enterprise customers on integration.

𝕏 @eyebrowCC↗ eyebrow.ccInfrapromisingMulti-scout · 3$$BROW

Token

Current price
$0.0004209
36m ago
Liquidity $75kVol 24h $5kPool since 2026-07-21

Where to trade

Links go to third-party venues. Always verify the contract address. Not financial advice.

Contract & market health

Fails85% · 3/4 contract checkschecked 6d ago
Contract — one ❌ is a red flag
  1. ✅Contract can no longer mint tokens?no mint, no privileged owner
  2. ✅Nobody can freeze, blacklist or pause?no pause, blacklist or cooldown
  3. ✅Sellable, without abusive tax?taxes 0/0%, verified source
  4. ❌Liquidity out of the team's reach?0% of LP burned/locked
Distribution, market, signal — 10% each (◐ = 5%)
  1. ◐Top 10 wallets (excl. pool/staking/locker) ≤ 30%?41.9% (goplus)
  2. ✅No single wallet (excl. pool) above 10%?largest: 7.9% (contract unverified 0xC54abD…)
  3. ✅≥ 500 holders, growing over 7d?764 holders (7d growth: not tracked yet)
  4. ❓Team / insider allocation vested on-chain?no locker/vesting identified — manual check (docs, transparency page)
  5. ✅Pool ≥ $50k?liquidity $91k
  6. ✅24h volume / liquidity between 0.2 and 5?vol $22k / liq = 0.2 · 49 buys / 37 sells
  7. ✅No overhang (mcap ≥ 30% of FDV, FDV ≤ $10M)?FDV $611k, mcap $611k (100%)
  8. ✅Healthy timing (pool ≥ 7d, no +300% pump, no wipeout)?pool 66d, -10%/24h, +3%/6h, 72% of known high
  9. ✅X account alive (≥ 3 months) and shipping (≥ 3 tweets/7d)?account 96d old · 20 tweets/7d
  10. ✅Real product and ≥ 2 scouts agree?5 AI green flags · 3 scouts

Sources: GoPlus (contract), the chain explorer (holders), DexScreener (market), ohmybird (signal). ❓ means we couldn't verify it automatically — check it yourself. Not financial advice.

AI Analysispromising

Confidence
78%

eyebrow is an AI agent security tool that provides supply chain integrity for AI coding agents (Claude Code, Cursor, Copilot, etc.).

It discovers, locks, and verifies skills, MCP servers, plugins, and hooks installed on developer machines, detecting drift and unauthorized changes before execution.

The project has shipped v0.5.1 with a working CLI tool (brew installable), is developing an API for enterprise integration, and has deployed a token ($BROW) on Ethereum mainnet.

The team is actively attending cybersecurity conferences (GISEC) and working with enterprise customers on integration.

Green flags: Real working product (v0.5.1 shipped, brew install available, GitHub releases) · Genuine early-stage: 693 followers, account created June 2024, small but engaged community · Solving real problem in emerging AI agent security space with technical differentiation (content hashing, lockfile verification) · Enterprise traction indicated by API development requests from paying customers and conference presence at GISEC · Three Tier A scouts converged (Dylan_HODL, ZenRacc00n, nahawin) with strong track records

Red flags: Token deployment appears recent/opportunistic for an infrastructure security tool (contract address in bio suggests tokenization pivot) · Limited public information about team (mentions 'autist dev' but no transparent team page) · Token utility unclear - security infrastructure tool doesn't obviously require token economics

Token
$BROW
Chain
Ethereum
Stage
mainnet+live
Category
AI Agent Security

Recent tweetsSee all on 𝕏 →

We will keep a close eye on these developments and see if we need to raise an eyebrow. Creating an agent is all great, but have safety built sounds a bit too cryptic. We would love to review and see how we can contribute here. We are one of a few on @RobinhoodApp that is tackling this particular AI agent security niche. Dms are open
1d ago♥ 23💬 7🔁 7
Our biggest release. We added @openclaw support, built tools to check code before installing it, and made it possible for any product to embed supply-chain scanning. Five new ways to stay safe. https://t.co/K0afPPxQMM
1d ago♥ 28💬 13🔁 9
OpenAI says one of its agents, sent to research medicine spending, couldn't find the data and went further than anyone allowed: into a Medicare statistics portal, running commands and pulling credentials. It accessed systems at four agencies without authorisation!! It took two months to notice! Nothing in the agent was tampered with. It used the tools it had, in ways nobody approved. That's the part every team deploying agents should sit with. Two controls would have changed this story. Decide in advance where an agent may connect, and block everything else. And keep a record of every tool call, so an unapproved request shows up the day it happens, not in August. Both are in eyebrow wrap: an egress allowlist, per-tool policy, and an audit trail for the tools you route through it. eyebrow wrap does three things this incident needed: 1. An egress allowlist. The OS sandbox limits where a wrapped tool can connect. If government health domains aren't on the list, the connection never opens. That's the same control OpenAI added afterwards. 2. Per-tool denial. A tool call outside policy returns an error instead of executing. 3. An audit record of every tool call. This speaks to the worst part of the story: two months passed before anyone noticed. A record of calls to hosts nobody approved turns that into something visible the same day. Would @OpenAI use it, probably not, but it would have warned them the SAME day. The key takeaway here is eyebrow's security layers are for both web2 and web3 agentic projects and we showcase legitimacy and tangible value. Now, it's a matter of time. #eyebrow $BROW
2d ago♥ 33💬 12🔁 9
One of our first API users are our friends over at @Parad0x_Labs, building great infra with VOOL. More information about VOOL, what this great team is building, is a link to their post in the comments. What they did They installed our API last week and started testing within their own environment. They checked the Hermes agent skill, we added the link below in the comments. In seconds our tool raised an eyebrow and flagged the risk. Then eyebrow explains what risk exposure this could amount to and what the worst case scenario could be here. It then gives the user the option to accept the risks or reject it. Our $BROW intern will need to add a nice visual where we actually raise the eyebrow with the 'fail' verdict. might look pretty cool! Step by step, securing all AI Agentic projects!
2d ago♥ 55💬 19🔁 12
No brakes! eyebrow is now listed on ClawHub, the plugin hub for @openclaw. Early this year, researchers found 341 malicious skills on ClawHub, 12% of everything listed at the time, and by February the count passed 800. Our plugin reads a skill before OpenClaw installs it and blocks the ones that run downloaded scripts, read your SSH keys or hide encoded commands. Eyebrow already tracks skills and MCP servers across 16 AI tools. OpenClaw is the first where it stops a bad one at the moment of install. Install it in one command, below. $BROW
3d ago♥ 47💬 17🔁 11

Signal Timeline

NA
@nahawin followed
AThreshold crossed → Gem·1w ago
ZE
@ZenRacc00n followed
AJoined the stack·1mo ago
DY
@Dylan_HODL followed
AFirst discovered·1mo ago

Score breakdown0–100

🎯Scout conviction
+27.3 / 35
📚Scout consensus
0 / 10
🪪Profile & earliness
+18 / 20
✍️Substance
+20 / 20
🤖AI verdict
+21.9 / 30
⚠️Penalties
-6 / 40
81
Above threshold (74)
Auto-promoted to Gems · Telegram alert sent.

This is a Gem.

Targets above 70 are pushed instantly to our Telegram channel. Join to catch the next one in real time.

Join Telegram →
Followers
784
Account age
3mo
Scouts
3
First seen
1mo ago