mcp-bandit is an open-source command-line tool for scanning Model Context Protocol (MCP) servers for security vulnerabilities, including prompt injection and SSRF. It is designed for security engineers to audit and analyze MCP deployments.
mcp-bandit sits in PulseGate's Security & compliance platforms category. It focuses on detecting security vulnerabilities and prompt injection risks in MCP servers. It is built as an open-source project for security engineers. mcp-bandit is open source under the MIT license. mcp-bandit is available on the web and the command line.
It is developed by Giridhar Pandurangi, and it first shipped in 2026. Development happens publicly on GitHub with 7 commits in the last 90 days. Key capabilities include MCP scanning, prompt injection detection, and static analysis. It exposes integrations via an MCP server.
Summary written by a language model from the project’s public pages.
What PulseGate has recorded for this listing
Closest matches by what these projects do