Server data from the Official MCP Registry
Security Scanner Ai automation via MCP. Includes scan dependencies, check headers, scan secr...
Security Scanner Ai automation via MCP. Includes scan dependencies, check headers, scan secr...
This security scanner MCP server has several moderate concerns. The server depends on an external authentication middleware (`auth_middleware.py`) located at a user-writable path (`~/clawd/meok-labs-engine/shared`), creating a supply chain and privilege escalation risk. The authentication system relies on local file-based key storage without cryptographic verification, and there is no input validation on several tools that scan user-supplied code/configuration. While the tools themselves are read-only and the core scanning logic is sound, the authentication bypass risk and reliance on path-based module imports significantly lower confidence. Supply chain analysis found 3 known vulnerabilities in dependencies (0 critical, 3 high severity). Package verification found 1 issue.
7 files analyzed · 14 issues found
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
This plugin requests these system permissions. Most are normal for its category.
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-csoai-org-security-scanner-ai-mcp": {
"args": [
"-y",
"security-scanner-ai-mcp"
],
"command": "npx"
}
}
}Be the first to review this server!
by Toleno · Developer Tools
Toleno Network MCP Server — Manage your Toleno mining account with Claude AI using natural language.
by mcp-marketplace · Developer Tools
Create, build, and publish Python MCP servers to PyPI — conversationally.
by Microsoft · Content & Media
Convert files (PDF, Word, Excel, images, audio) to Markdown for LLM consumption
by mcp-marketplace · Developer Tools
Scaffold, build, and publish TypeScript MCP servers to npm — conversationally
by Taylorwilsdon · Productivity
Control Gmail, Calendar, Docs, Sheets, Drive, and more from your AI
by mcp-marketplace · Finance
Free stock data and market news for any MCP-compatible AI assistant.