Tenable has announced Exchange Inspector, a new review layer for components submitted to its CyberAgents Exchange marketplace.

The company says Inspector will evaluate community-built agents, skills, MCP servers and multi-agent playbooks using three layers: assessment with OpenAI cyber models, inspection through Tenable One AI Exposure and review by Tenable security researchers.

The target is agent supply-chain risk

CyberAgents Exchange already hosts more than 100 community-submitted components. That makes provenance and component review increasingly important: an agent or MCP server can carry permissions, instructions and dependencies that become part of a defender’s operational environment.

Tenable positions Inspector as a way to surface suspicious behavior and security concerns before users adopt a component.

Availability is still limited

The announcement says Exchange Inspector is expected to become available in September. Independent coverage on September 4 likewise describes it as an upcoming deeper inspection layer rather than a feature that is already generally available.

That boundary matters. AiToolMap is not treating the announcement as a security certification for every Exchange component, and it is not describing Inspector as GA until Tenable actually ships it.

Product-routing impact

Tenable CyberAgents Exchange is not currently represented as a canonical AiToolMap tool record. This story is therefore routed to NEW-TOOL RESEARCH for identity, product-surface and deduplication checks rather than creating a catalog record from news evidence alone.