Plop
Red-teams your agent's tool use
Runs as a web app, a CLI, or a Python library.
Plop attacks an agent that uses tools — prompt injection, jailbreaks, poisoned tool output, loops, scope escape — and reports what held and what broke. It runs the suite twice: once with the agent unprotected, once with guards on, so you can see what the guards are worth.