Developer · Remote MCP server
SkillsSafe Security Scanner
AI skill security scanner. Detects prompt injection, credential theft, ClawHavoc. Free, no signup.
What the MCP Registry states
The entry as published to the official MCP Registry (read 2026-10-04), latest version.
- Registry name
com.skillssafe/scanner- Version
- 1.1.0
- Status
- Active
- Category
- developer
- Transport
- SSE (HTTP + Server-Sent Events), stdio (local process)
- Package
- npm
- Published
- 2026-03-12
- Updated
- 2026-03-12
- Publisher
- com.skillssafe
- Repository
- github.com/GUCCI-atlasv/Skillssafe.com
- Source
- Registry API entry
Remote endpoints
| Transport | URL | Headers declared |
|---|---|---|
| SSE (HTTP + Server-Sent Events) | https://mcp.skillssafe.com/sse | None |
Packages
| Registry | Package | Version | Transport |
|---|---|---|---|
| npm | skillssafe-mcp | 1.0.0 | stdio |
How to connect SkillsSafe Security Scanner
SkillsSafe Security Scanner is a remote MCP server reached over the older SSE transport, at https://mcp.skillssafe.com/sse. Clients that support remote servers generally still accept SSE endpoints, though the protocol now favours Streamable HTTP.
No headers are declared in the registry entry. If the server needs you to sign in, a client that supports MCP authorization opens the service's own sign-in page when it first connects.
It can also run locally from a Node.js package published to the npm registry: skillssafe-mcp version 1.0.0. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs Node.js; clients usually start it with npx — the usual command is npx -y skillssafe-mcp@1.0.0.
In the mcpServers JSON format that many desktop and editor MCP clients read, the entry looks like this (placeholders in angle brackets):
{
"mcpServers": {
"scanner": {
"command": "npx",
"args": [
"-y",
"skillssafe-mcp@1.0.0"
]
}
}
}Derived from the registry entry, not tested here. What the server does, and on what terms, is set by its publisher; check its repository or website before giving it access to your accounts or files. How to add an MCP server to an assistant · Before you connect
More developer servers
| Server | Runs |
|---|---|
| SkillOS MCP ServerSkillOS MCP Runtime exposes the SkillOS skill registry as activatable MCP tools for AI agents. | Local · stdio |
| SkillproofCheck whether a Claude Code skill was tested and whether it works before installing it. | Local · stdio |
| Skills AnywhereDiscover and load Agent Skills from configured local directories and Git sources over stdio MCP. | Local · stdio |
| SkillsindexSearch and score 11,000+ AI agent tools: MCP servers, Claude skills, GPT actions, IDE plugins. | Local · stdio |
| SkillTotalDeterministic security scan of MCP servers, agent skills and npm/PyPI packages. Runs locally. | Local · stdio |
| Skolverket MCPMCP server for Skolverket's open APIs - Curriculum, School Units, and Adult Education. | Local · stdio |
| SKUit Network & Security CatalogAI helper for choosing and speccing network & security products from Cisco, Arista, Juniper and more. | Remote · HTTP |
| Skybridgepackager MCPA paid remote MCP for Skybridge, built to return verdicts, receipts, usage logs, and audit-ready JSO. | Remote · HTTP |