פיתוח · שרת MCP מקומי
Vulnerability Scanner
Triggers GuardBee scans, queries findings, AI-assisted remediation guidance.
מה ה-MCP Registry מציין
הרשומה כפי שפורסמה ב-MCP Registry הרשמי (נקרא ב-4 באוקטובר 2026), בגרסה האחרונה.
- שם במרשם
io.github.4hmetuyar/vulnerability-scanner- גרסה
- 0.2.4
- סטטוס
- פעיל
- קטגוריה
- פיתוח
- שכבת תעבורה
- stdio (תהליך מקומי)
- חבילה
- npm
- פורסם
- 28 בספטמבר 2026
- עודכן
- 28 בספטמבר 2026
- מפרסם
- 4hmetuyar (GitHub) · 26 שרתים עם דפים כאן
- מרחב שמות
- מרחב השמות אומת על ידי ה-MCP Registry דרך GitHub (github.com/4hmetuyar) · איך
- מאגר קוד
- github.com/GuardBee/guardbee-mcp (תיקייה packages/vulnerability-scanner)
- מקור
- הרשומה ב-API של המרשם
חבילות
| מרשם | חבילה | גרסה | שכבת תעבורה |
|---|---|---|---|
| npm | @guardbee/mcp-vulnerability-scanner | 0.2.4 | stdio |
איך מחברים את Vulnerability Scanner
Vulnerability Scanner רץ באופן מקומי מתוך חבילת Node.js שפורסמה במרשם npm: @guardbee/mcp-vulnerability-scanner, גרסה 0.2.4. הוא משתמש ב-MCP על גבי stdio, ולכן הלקוח מפעיל אותו כתוכנה ומתקשר איתו דרך קלט ופלט סטנדרטיים. כדי להריץ אותו צריך Node.js; לקוחות מפעילים אותו בדרך כלל עם npx - הפקודה המקובלת היא npx -y @guardbee/mcp-vulnerability-scanner@0.2.4.
בפורמט ה-JSON של mcpServers, שלקוחות MCP רבים לדסקטופ ולעורכי קוד קוראים, הרשומה נראית כך (מצייני מקום בסוגריים זוויתיים):
{
"mcpServers": {
"vulnerability-scanner": {
"command": "npx",
"args": [
"-y",
"@guardbee/mcp-vulnerability-scanner@0.2.4"
]
}
}
}נגזר מהרשומה במרשם, ולא נבדק כאן. מה השרת עושה, ובאילו תנאים, נקבע על ידי המפרסם שלו; כדאי לבדוק את מאגר הקוד או את האתר שלו לפני שנותנים לו גישה לחשבונות או לקבצים שלך. איך מוסיפים שרת MCP לעוזר AI · לפני שמתחברים
עוד מ-4hmetuyar (GitHub)
| שרת | הרצה |
|---|---|
| Oauth AuditorScans MCP server auth code for OAuth 2.1 anti-patterns: token passthrough, missing audience. | מקומי · stdio |
| Prompt Injection ScannerScans RAG content/scraped pages for indirect prompt injection. | מקומי · stdio |
| Prompt Leak ScannerCatches leaked credentials and PII in outbound LLM prompts. | מקומי · stdio |
| Rug Pull DetectorBaselines an MCP server's tools and detects tool-definition changes after approval. | מקומי · stdio |
| Secret ScannerScans files for leaked secrets and API keys. | מקומי · stdio |
| Security ProxyMCP gateway: many servers, one policy, lethal-trifecta blocking, PII masking, audit log. | מקומי · stdio |
| Security SuiteBundle of secret-scanner, dependency-auditor, ssl-inspector, and dns-intelligence. | מקומי · stdio |
| Slopsquat ScannerChecks declared npm/PyPI dependencies against real registries to catch slopsquatting. | מקומי · stdio |
| Tool Poisoning ScannerScans MCP tool definitions for hidden instructions and confused-deputy sinks. | מקומי · stdio |
| Toxic Flow AuditorFinds lethal-trifecta toxic flows in MCP tool catalogs: untrusted input, sensitive data, egress. | מקומי · stdio |
| Unbounded Consumption AuditorScans LLM/agent code for Unbounded Consumption / denial-of-wallet risks (OWASP LLM Top 10 2026 #6) | מקומי · stdio |
| Vector Store ScannerProbes vector-database endpoints for unauthenticated exposure of embeddings/RAG data. | מקומי · stdio |
עוד שרתים בקטגוריה פיתוח
| שרת | הרצה |
|---|---|
| VULKGenerate, edit, and deploy immersive 3D/WebGL web projects from any MCP assistant. | מרוחק ומקומי · HTTP ו-stdioבדיקה חיה: נדרשת התחברות |
| vuln-intelHosted CVE + bug-bounty-mechanic MCP: exploitation-first ranking, CVE fact-check, mechanic transfer. | מרוחק · HTTPבדיקה חיה: נדרשת התחברות |
| VulnCheckVulnCheck exploit intelligence - CVE research, exploit data, advisories, and threat analysis. | מקומי · stdio |
| Vulnerability Intel MCPDefensive vulnerability intelligence search across public CVE/NVD and GitHub advisory APIs with CVSS. | מרוחק · HTTPבדיקה חיה: נדרשת התחברות |
| VulnFeedDependency vulnerability scanner with EPSS scoring. 9 MCP tools. Free tier + x402. | מקומי · stdio |
| VulnicheckHTTP MCP Server for comprehensive Python vulnerability scanning and security analysis. | מקומי · HTTP |
| VulX WatchIndependent security review for AI-built apps. Watch a GitHub repo. Never a patch. | מרוחק · HTTPבדיקה חיה: נדרשת התחברות |
| VynixGive AI coding agents access to your Vynix visual feedback, bug reports, and AI diagnosis. | מרוחק ומקומי · HTTP ו-stdioבדיקה חיה: ✓ לחיצת יד |