Run standardized security scans and reports for authorized assessments.
Copy the install command and let the AI configure it · recommended for beginners
No copy-paste install info for "mcp-security-server" yet — see the docs or source repo.
Perform host discovery and port scanning on an authorized target range, and return online hosts, open ports, and basic service details in unified JSON.
Standardized JSON results with live hosts, port states, and basic service information.
Run service fingerprinting, web vulnerability scanning, and CVE verification on an authorized target, and output verifiable JSON results.
Unified JSON output containing service versions, suspected issues, and CVE verification findings.
Generate a security assessment report from completed authorized scan results, summarizing findings while preserving compliance controls.
A structured assessment report and corresponding standardized JSON data.
Security researchers or DevOps teams can use it after authorization to perform host discovery, port scanning, and service identification for a quick asset overview. The unified JSON output also supports later automation.
When a team needs a baseline security assessment for an authorized web target, it can run web vulnerability scans and combine them with service fingerprinting and CVE verification. This helps produce results in a consistent format.
After completing authorized assessments, development or operations teams can use it to consolidate scan results and generate reports. Its strict compliance controls also help keep usage limited to authorized scenarios.
It provides AI agents with standardized security scanning capabilities for authorized assessment scenarios. These include host detection, port scanning, service fingerprinting, web vulnerability scanning, CVE verification, and report generation with unified JSON output.
The description explicitly states it is for “authorized assessments” and includes strict compliance controls. In other words, it is intended for authorized security testing, not unauthorized scanning.
It emphasizes unified JSON output, making scan results easier for AI agents or other systems to consume. For exact fields and installation details, the provided material is insufficient; see the source repository.
Get CVE-based security review prompts to find risky code vulnerabilities faster.
Run authorized pentests, scan vulnerabilities, and generate security reports.
Scan MCP servers for vulnerabilities, prompt injection, and tool poisoning risks.
Scan configured MCP servers locally and generate inventory with risk scores.
Audit MCP configs for exposed access, secrets, models, and compliance AI-BOMs.
Scan codebases for secrets, SAST issues, vulnerable dependencies, and IaC risks.