mcp-security-scan is an open-source CLI tool that scans MCP servers for hardcoded secrets, unsafe execution, and missing authentication. It helps developers and security engineers identify and remediate vulnerabilities in their MCP infrastructure.
In the Security & compliance platforms space, mcp-security-scan takes a focused approach. It focuses on detecting security vulnerabilities and misconfigurations in MCP servers automatically. mcp-security-scan is an open-source project aimed at developers and security engineers managing MCP servers. The project is open source (MIT). It ships for the command line.
Behind mcp-security-scan is agentgraph-co, and it first shipped in 2026. Development happens publicly on GitHub with 5 commits in the last 90 days. Key capabilities include secret detection, unsafe exec scan, and auth check. It exposes integrations via an MCP server.
Summary written by a language model from the project’s public pages.
What PulseGate has recorded for this listing
Closest matches by what these projects do