MCP-scan – Security scanner for MCP server configs
First security scanner for MCP configs as the protocol gains adoption.

Scanned 88K tools, found 537 malicious—solves real AI supply-chain vulnerability.
AI engineers, DevOps teams, enterprises deploying MCP servers and AI agents
Snyk · Sonatype · Socket.dev
The problem: when you install an MCP tool, you're giving an AI agent code execution on your machine. I scanned 88K+ tools and found crypto miners, SSH backdoors, prompt injection, and tools silently reading .env files and SSH keys. 537 flagged total.
How it works: - Static analysis + AI security review generates a trust score (0-100) per tool - Verified tools earn badges (install, boot, tool discovery all tested) - Everything is searchable with security-aware ranking
Ways to use it: - Browse: https://getvet.ai/catalog - CLI: `npx @getvetai/cli find "database"` - MCP server (yes, an MCP that discovers MCPs): `npx @getvetai/mcp` - API: `curl https://getvet.ai/api/v1/discover?q=github`
The CLI is open source: https://github.com/getvetai/cli
Free to use. If you build MCP servers, you can claim and get verified.
Would love feedback on the security analysis approach and what data you'd want to see.
First security scanner for MCP configs as the protocol gains adoption.
Catches typosquatting and leaked secrets in MCP configs before deployment.
OWASP MCP Top 10 scanner and proxy firewall for AI agent tool calls.
Finally a security linter for MCP configs before you accidentally execute a prompt injection payload.
Useful MCP directory, but awesome-mcp-servers already exists.
Five-LLM consensus catches prompt injection patterns static analysis misses.