Server data from the Official MCP Registry
Scan installed MCP servers for security vulnerabilities with 16 detection engines.
About
Scan installed MCP servers for security vulnerabilities with 16 detection engines.
Security Report
Valid MCP server (2 strong, 2 medium validity signals). 3 known CVEs in dependencies (0 critical, 3 high severity) Package registry verified. Imported from the Official MCP Registry.
9 files analyzed · 4 issues found
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
Permissions Required
This plugin requests these system permissions. Most are normal for its category.
What You'll Need
Set these up before or after installing:
Environment variable: MCPAMPEL_API_KEY
How to Install
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-diemoeve-mcpampel": {
"env": {
"MCPAMPEL_API_KEY": "your-mcpampel-api-key-here"
},
"args": [
"mcpampel"
],
"command": "uvx"
}
}
}Documentation
View on GitHubFrom the project's GitHub README.
MCPAmpel - MCP Security Scanner
Scan your installed MCP servers for security vulnerabilities, directly from your AI agent.
MCPAmpel discovers MCP servers from your Claude Code, Cursor, Windsurf, or Gemini CLI configuration, submits them to 16 scanning engines, and returns an aggregated trust score with detailed findings.
50 API calls/day included.
Quick Start
uvx mcpampel
Configuration
Claude Code / Claude Desktop
Add to ~/.claude/settings.json or claude_desktop_config.json:
{
"mcpServers": {
"mcpampel": {
"command": "uvx",
"args": ["mcpampel"],
"env": {
"MCPAMPEL_API_KEY": "your_key_here"
}
}
}
}
Cursor
Add to ~/.cursor/mcp.json:
{
"mcpServers": {
"mcpampel": {
"command": "uvx",
"args": ["mcpampel"],
"env": {
"MCPAMPEL_API_KEY": "your_key_here"
}
}
}
}
Windsurf
Add to ~/.codeium/windsurf/mcp_config.json:
{
"mcpServers": {
"mcpampel": {
"command": "uvx",
"args": ["mcpampel"],
"env": {
"MCPAMPEL_API_KEY": "your_key_here"
}
}
}
}
Gemini CLI
Add to ~/.gemini/settings.json:
{
"mcpServers": {
"mcpampel": {
"command": "uvx",
"args": ["mcpampel"],
"env": {
"MCPAMPEL_API_KEY": "your_key_here"
}
}
}
}
Getting an API Key
Register for free at mcpampel.com.
Environment Variables
| Variable | Required | Default | Description |
|---|---|---|---|
MCPAMPEL_API_KEY | Yes | - | Your API key (free at mcpampel.com) |
MCPAMPEL_BASE_URL | No | https://mcpampel.com | API base URL |
Tools
scan_my_servers
Discovers all MCP servers from your editor config and scans them with 16 engines. Returns a summary table with trust scores. No input needed.
scan_url
Scan a single GitHub, GitLab, npm, or PyPI URL. Returns trust score, engine breakdown, and findings.
| Parameter | Type | Required |
|---|---|---|
url | string | Yes |
check_status
Show your daily quota usage and remaining scans.
get_scan_results
Get detailed results for a specific scan by ID. Use after scan_my_servers or scan_url to drill into findings.
| Parameter | Type | Required |
|---|---|---|
scan_id | string | Yes |
Development
cd mcp-plugin
uv sync
uv run pytest
License
Apache License 2.0
Reviews
No reviews yet
Be the first to review this server!
More Developer Tools MCP Servers
Fetch
Freeby Modelcontextprotocol · Developer Tools
Web content fetching and conversion for efficient LLM usage
Toleno
Freeby Toleno · Developer Tools
Toleno Network MCP Server — Manage your Toleno mining account with Claude AI using natural language.
mcp-creator-python
Freeby mcp-marketplace · Developer Tools
Create, build, and publish Python MCP servers to PyPI — conversationally.
MarkItDown
Freeby Microsoft · Content & Media
Convert files (PDF, Word, Excel, images, audio) to Markdown for LLM consumption
MCP Marketplace
Freeby mcp-marketplace · Developer Tools
Search and install MCP servers from inside your AI client.
FinAgent
Freeby mcp-marketplace · Finance
Free stock data and market news for any MCP-compatible AI assistant.
