mcp-scanner
Scan MCP servers to detect potential threats and security issues.
- Type
- MCP
- Open source
- Yes
- GitHub Stars
- ★ 1.0k
- Source
- mcp-github
- Repository
- github.com/cisco-ai-defense/mcp-scanner
Overview
MCP Scanner is a Python tool designed to scan MCP servers and tools, aiming to identify potential security vulnerabilities. It combines Cisco AI Defense check API, YARA rules, and LLM-as-a-judge to detect malicious MCP tools. The tool supports multiple operating modes, including standalone CLI or REST API server, and provides multi-engine security analysis, vulnerable package scanning, readiness checks, and more. Ideal for developers and teams needing to perform security assessments on MCP servers.
Capabilities
- ▪Multi-engine security analysis
- ▪Vulnerable package scanning
- ▪Readiness checking
- ▪Comprehensive scanning of MCP tools and resources
- ▪Behavioral code scanning
- ▪VirusTotal binary scanning
Use cases
Setup
uv tool install --python 3.13 cisco-ai-mcp-scanner
This information was compiled by AI from public sources and may contain inaccuracies — please refer to the source.
FAQ
How to install MCP Scanner?
Install using uv tool: uv tool install --python 3.13 cisco-ai-mcp-scanner
Which scanning engines does MCP Scanner support?
Supports YARA, LLM-as-a-judge, and Cisco AI Defense engines
Related skills
gemini-cli
Gemini CLI is an open-source AI agent that brings Gemini's powerful capabilities directly into the terminal.
sast-skills
Transform your AI coding assistant into a SAST scanner to automatically detect vulnerabilities in code.
gortex
High-performance code intelligence engine supporting 257 languages and multiple repositories, accessible via CLI, MCP Server, and API.
scientific-agent-skills
Transform any AI agent into a scientific assistant with 147 ready-to-use research skills.
susi_alexa_skill
A skill that enables question-and-answer interactions between Alexa and Susi AI.
claude-context
Provides code search capabilities for Claude Code, turning the entire codebase into context.