פיתוח · שרת MCP מקומי
Security Suite
Bundle of secret-scanner, dependency-auditor, ssl-inspector, and dns-intelligence.
מה ה-MCP Registry מציין
הרשומה כפי שפורסמה ב-MCP Registry הרשמי (נקרא ב-4 באוקטובר 2026), בגרסה האחרונה.
- שם במרשם
io.github.4hmetuyar/security-suite- גרסה
- 0.2.3
- סטטוס
- פעיל
- קטגוריה
- פיתוח
- שכבת תעבורה
- stdio (תהליך מקומי)
- חבילה
- npm
- פורסם
- 28 בספטמבר 2026
- עודכן
- 28 בספטמבר 2026
- מפרסם
- 4hmetuyar (GitHub) · 26 שרתים עם דפים כאן
- מרחב שמות
- מרחב השמות אומת על ידי ה-MCP Registry דרך GitHub (github.com/4hmetuyar) · איך
- מאגר קוד
- github.com/GuardBee/guardbee-mcp (תיקייה packages/security-suite)
- מקור
- הרשומה ב-API של המרשם
חבילות
| מרשם | חבילה | גרסה | שכבת תעבורה |
|---|---|---|---|
| npm | @guardbee/security-suite | 0.2.3 | stdio |
איך מחברים את Security Suite
Security Suite רץ באופן מקומי מתוך חבילת Node.js שפורסמה במרשם npm: @guardbee/security-suite, גרסה 0.2.3. הוא משתמש ב-MCP על גבי stdio, ולכן הלקוח מפעיל אותו כתוכנה ומתקשר איתו דרך קלט ופלט סטנדרטיים. כדי להריץ אותו צריך Node.js; לקוחות מפעילים אותו בדרך כלל עם npx - הפקודה המקובלת היא npx -y @guardbee/security-suite@0.2.3.
בפורמט ה-JSON של mcpServers, שלקוחות MCP רבים לדסקטופ ולעורכי קוד קוראים, הרשומה נראית כך (מצייני מקום בסוגריים זוויתיים):
{
"mcpServers": {
"security-suite": {
"command": "npx",
"args": [
"-y",
"@guardbee/security-suite@0.2.3"
]
}
}
}נגזר מהרשומה במרשם, ולא נבדק כאן. מה השרת עושה, ובאילו תנאים, נקבע על ידי המפרסם שלו; כדאי לבדוק את מאגר הקוד או את האתר שלו לפני שנותנים לו גישה לחשבונות או לקבצים שלך. איך מוסיפים שרת MCP לעוזר AI · לפני שמתחברים
עוד מ-4hmetuyar (GitHub)
| שרת | הרצה |
|---|---|
| Oauth AuditorScans MCP server auth code for OAuth 2.1 anti-patterns: token passthrough, missing audience. | מקומי · stdio |
| Prompt Injection ScannerScans RAG content/scraped pages for indirect prompt injection. | מקומי · stdio |
| Prompt Leak ScannerCatches leaked credentials and PII in outbound LLM prompts. | מקומי · stdio |
| Rug Pull DetectorBaselines an MCP server's tools and detects tool-definition changes after approval. | מקומי · stdio |
| Secret ScannerScans files for leaked secrets and API keys. | מקומי · stdio |
| Security ProxyMCP gateway: many servers, one policy, lethal-trifecta blocking, PII masking, audit log. | מקומי · stdio |
| Slopsquat ScannerChecks declared npm/PyPI dependencies against real registries to catch slopsquatting. | מקומי · stdio |
| Tool Poisoning ScannerScans MCP tool definitions for hidden instructions and confused-deputy sinks. | מקומי · stdio |
| Toxic Flow AuditorFinds lethal-trifecta toxic flows in MCP tool catalogs: untrusted input, sensitive data, egress. | מקומי · stdio |
| Unbounded Consumption AuditorScans LLM/agent code for Unbounded Consumption / denial-of-wallet risks (OWASP LLM Top 10 2026 #6) | מקומי · stdio |
| Vector Store ScannerProbes vector-database endpoints for unauthenticated exposure of embeddings/RAG data. | מקומי · stdio |
| Vulnerability ScannerTriggers GuardBee scans, queries findings, AI-assisted remediation guidance. | מקומי · stdio |
עוד שרתים בקטגוריה פיתוח
| שרת | הרצה |
|---|---|
| Security OrchestraMulti-agent MCP platform for data centers and critical power. | מקומי · stdio |
| Security PreflightStatic MCP, source-code and injection-indicator checks with redacted signed receipts. | מרוחק · HTTPבדיקה חיה: ✓ לחיצת יד |
| Security RecipesRead-only CVE intelligence, remediation playbooks, and agent setup guides. Not a scanner. | מרוחק · HTTPבדיקה חיה: ✓ לחיצת יד |
| Security ToolsFree front-end security check for any website: a grade plus the secrets and keys it exposes. | מרוחק · HTTPבדיקה חיה: ✓ לחיצת יד |
| Security Txt Cra Lint13 rules that decide whether a vulnerability report ever reaches you. | מקומי · stdio |
| SecurityscanSecurity for AI agents: MCP audits, secret redaction, skill vetting, network scans, agent checkout. | מקומי · stdio |
| SecurityScanScan GitHub-hosted AI skills for vulnerabilities: prompt injection, malware, OWASP LLM Top 10. | מרוחק · HTTPבדיקה חיה: ✓ לחיצת יד |