Développement · Serveur MCP local
A2a Auditor
Scans Agent2Agent (A2A) protocol code for webhook SSRF, missing auth, and credential exposure.
Ce qu’indique le MCP Registry
L’entrée telle que publiée dans le MCP Registry officiel (consultée le 4 octobre 2026), dernière version.
- Nom dans le registre
io.github.4hmetuyar/a2a-auditor- Version
- 0.1.1
- Statut
- Actif
- Catégorie
- développement
- Transport
- stdio (processus local)
- Paquet
- npm
- Publié
- 28 septembre 2026
- Mis à jour
- 28 septembre 2026
- Éditeur
- 4hmetuyar (GitHub) · 26 serveurs avec une page ici
- Espace de noms
- Espace de noms vérifié par le MCP Registry via GitHub (github.com/4hmetuyar) · comment
- Dépôt
- github.com/GuardBee/guardbee-mcp (dossier packages/a2a-auditor)
- Source
- Entrée dans l’API du registre
Paquets
| Registre | Paquet | Version | Transport |
|---|---|---|---|
| npm | @guardbee/mcp-a2a-auditor | 0.1.1 | stdio |
Comment connecter A2a Auditor
A2a Auditor s’exécute en local depuis un paquet Node.js publié sur le registre npm : @guardbee/mcp-a2a-auditor, version 0.1.1. Il communique en MCP via stdio : le client le lance comme un programme et échange avec lui par l’entrée et la sortie standard. Il nécessite Node.js ; les clients le lancent généralement avec npx - la commande habituelle est npx -y @guardbee/mcp-a2a-auditor@0.1.1.
Au format JSON mcpServers, que lisent de nombreux clients MCP de bureau et éditeurs de code, l’entrée se présente ainsi (espaces réservés entre chevrons) :
{
"mcpServers": {
"a2a-auditor": {
"command": "npx",
"args": [
"-y",
"@guardbee/mcp-a2a-auditor@0.1.1"
]
}
}
}Déduit de l’entrée du registre, non testé ici. Ce que fait le serveur, et à quelles conditions, relève de son éditeur ; consultez son dépôt ou son site web avant de lui donner accès à vos comptes ou à vos fichiers. Comment ajouter un serveur MCP à un assistant · Avant de connecter un serveur
Du même éditeur : 4hmetuyar (GitHub)
| Serveur | Exécution |
|---|---|
| Agent Graph AuditorFinds transitive excessive agency across LangGraph/CrewAI/AutoGen orchestration graphs. | Local · stdio |
| Ai Code ScannerScans code for insecure LLM/AI integration: exposed keys, unsafe output, prompt injection. | Local · stdio |
| Compliance CheckerKVKK/GDPR/CCPA compliance checks for codebases. | Local · stdio |
| Db GatewayKVKK/GDPR-compliant LLM-to-database gateway: PII masking, RBAC, rate limiting, audit log. | Local · stdio |
| Dependency AuditorCVE scanning for npm/pip/cargo dependencies via OSV. | Local · stdio |
| Dns IntelligenceDNS record enumeration, misconfiguration and dangling-subdomain detection. | Local · stdio |
| Elicitation AuditorMCP elicitation anti-patterns: secrets in forms, third-party authorize URLs, credentials in URLs. | Local · stdio |
| Llm RedteamActive jailbreak/extraction/obfuscation red-teaming for live LLM endpoints. | Local · stdio |
| MCP Config AuditorScans Cursor/Claude/Windsurf/VS Code MCP configs for unpinned versions, secrets, typosquats. | Local · stdio |
| MCP Server AuditorScans MCP server tool definitions for excessive agency, injection sinks, hardcoded secrets. | Local · stdio |
| Memory Poisoning ScannerScans agent code for untrusted input poisoning persistent cross-session memory. | Local · stdio |
| Model ScannerScans ML model files (PyTorch, safetensors, Keras, ONNX) for supply-chain risks. | Local · stdio |
Autres serveurs : développement
| Serveur | Exécution |
|---|---|
| 402cronPaid cron for AI agents: we call your https URL on schedule, signed. No account, paid with x402. | Distant · HTTPVérification en direct : ✓ poignée de main |
| 4da MCP ServerUpgrade intelligence for AI agents: what an upgrade changes, where it touches your code, CVE scans. | Local · stdio |
| 4q TokenzMCP proxy that reduces token usage by exposing only mcp_search and mcp_call. | Local · stdio |
| 7IT SolutionsStore speed, web-app security checks, automation ROI, checklists and guides from 7IT Solutions. | Distant · HTTPVérification en direct : ✓ poignée de main |
| A2adependencyinspector MCPRemote MCP for A2A dependency inspector MCP, structured receipts, audit logs, and reviewer-ready evi. | Distant · HTTPVérification en direct : ✗ pas de poignée de main |
| A2ahubReliable handoffs between autonomous agents, using a Git repository both sides can inspect. | Local · stdio |
| A2AL DaemonMakes any AI agent globally reachable and discoverable-no cloud, domain, or port forwarding needed. | Local · stdio |
| A2AParkPublic behavioral test environment for AI agents with stateful rides and signed scorecards. | Distant · HTTPVérification en direct : ✓ poignée de main |