Skip to content
Back to the index

mcp-security-scan

PyPIInfrastructure

PulseGate's liveness check found it on 14 Sep 2026; it is registered on GitHub and PyPI and has been in the index since 9 Jul 2026. How this is checked

mcp-security-scan is an open-source CLI tool that scans MCP servers for hardcoded secrets, unsafe execution, and missing authentication. It helps developers and security engineers identify and remediate vulnerabilities in their MCP infrastructure.

Inferred · not functionally tested

Open SourceMITCLI
Visit PyPI
1alternative
4features
2026since

Overview

4 features

Purpose: Detecting security vulnerabilities and misconfigurations in MCP servers automatically.

Inferred · not functionally tested

Audience: developers and security engineers managing MCP servers

Inferred · not functionally tested

Functions: Unknown

Interfaces: API: unknown · MCP: indicated (inferred, not tested) · CLI: indicated (inferred, not tested) · Self-hosting: unknown

Recorded constraints: pricing: open_source · license: MIT · platforms: CLI · deployment: cli

Constraint provenance is unknown; confirm requirements with the publisher.

Record sources: pypi.org · github.com. These links do not verify the individual claims.

In the Application security & vulnerability scanning space, mcp-security-scan takes a focused approach. Inferred · not functionally tested: It focuses on detecting security vulnerabilities and misconfigurations in MCP servers automatically. Inferred · not functionally tested: mcp-security-scan is an open-source project aimed at developers and security engineers managing MCP servers. Basis unknown · not verified: The project is open source (MIT). Basis unknown · not verified: It ships for the command line.

Behind mcp-security-scan is agentgraph-co, and it first shipped in 2026. Development happens publicly on GitHub with 5 commits in the last 90 days. Inferred · not functionally tested: Key capabilities include secret detection, unsafe exec scan, and auth check. Basis unknown · not verified: Catalogued interfaces include an MCP server.

Summary written by a language model from the project’s public pages.

Tasks: Inferred · not functionally tested

  • Secret detection
  • Unsafe exec scan
  • Auth check
  • MCP protocol support

Topics: Inferred · not functionally tested

Tags
mcp-securityvulnerability-scansecret-detection
AI capabilities
Weights: Open

JSON profile · Text profile · Access guide

Built with & integrations

Connectors
MCP
Runs on
CLI

Trust & compliance

License
MIT
Public signals
HTTPSOpen SourceGitHubActive maintenance

Indexing history

What PulseGate has recorded for this listing

Nothing recorded for this listing in this window.

Frequently asked questions about mcp-security-scan

What does mcp-security-scan do?
Inferred · not functionally tested: Mcp-security-scan focuses on detecting security vulnerabilities and misconfigurations in MCP servers automatically. It is catalogued under Application security & vulnerability scanning on PulseGate.
Who should use mcp-security-scan?
Inferred · not functionally tested: mcp-security-scan is an open-source project built for developers and security engineers managing MCP servers.
Is mcp-security-scan free?
Basis unknown · not verified: Yes — mcp-security-scan is open source under the MIT license and free to use.
What platforms does mcp-security-scan run on?
Basis unknown · not verified: mcp-security-scan runs on the command line.
Is mcp-security-scan still maintained?
PulseGate's liveness check found it on 14 Sep 2026. Its GitHub repository shows 5 commits in the last 90 days.
What projects are similar to mcp-security-scan?
Similar projects tracked by PulseGate include mcpsecscan, mcp-safety, and mcp-authscan.mcpsecscanmcp-safetymcp-authscan
Who makes mcp-security-scan?
mcp-security-scan is developed by agentgraph-co.
How long has mcp-security-scan been around?
mcp-security-scan first shipped in 2026.

Similar projects

Closest matches by what these projects do