Developer · Local MCP server

A2a Auditor

Scans Agent2Agent (A2A) protocol code for webhook SSRF, missing auth, and credential exposure.

What the MCP Registry states

The entry as published to the official MCP Registry (read 2026-10-04), latest version.

Registry name
io.github.4hmetuyar/a2a-auditor
Version
0.1.1
Status
Active
Category
developer
Transport
stdio (local process)
Package
npm
Published
2026-09-28
Updated
2026-09-28
Publisher
4hmetuyar (GitHub) · 26 servers with pages here
Repository
github.com/GuardBee/guardbee-mcp (folder packages/a2a-auditor)
Source
Registry API entry

Packages

RegistryPackageVersionTransportEnvironment variables
npm@guardbee/mcp-a2a-auditor0.1.1stdioNone declared

How to connect A2a Auditor

A2a Auditor runs locally from a Node.js package published to the npm registry: @guardbee/mcp-a2a-auditor version 0.1.1. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs Node.js; clients usually start it with npx — the usual command is npx -y @guardbee/mcp-a2a-auditor@0.1.1.

In the mcpServers JSON format that many desktop and editor MCP clients read, the entry looks like this (placeholders in angle brackets):

{
  "mcpServers": {
    "a2a-auditor": {
      "command": "npx",
      "args": [
        "-y",
        "@guardbee/mcp-a2a-auditor@0.1.1"
      ]
    }
  }
}

Derived from the registry entry, not tested here. What the server does, and on what terms, is set by its publisher; check its repository or website before giving it access to your accounts or files. How to add an MCP server to an assistant · Before you connect

More from 4hmetuyar (GitHub)

ServerRunsEndpoint or package
Agent Graph AuditorFinds transitive excessive agency across LangGraph/CrewAI/AutoGen orchestration graphs.Local · stdionpm: @guardbee/mcp-agent-graph-auditor
Ai Code ScannerScans code for insecure LLM/AI integration: exposed keys, unsafe output, prompt injection.Local · stdionpm: @guardbee/mcp-ai-code-scanner
Compliance CheckerKVKK/GDPR/CCPA compliance checks for codebases.Local · stdionpm: @guardbee/mcp-compliance-checker
Db GatewayKVKK/GDPR-compliant LLM-to-database gateway: PII masking, RBAC, rate limiting, audit log.Local · stdionpm: @guardbee/mcp-db-gateway
Dependency AuditorCVE scanning for npm/pip/cargo dependencies via OSV.Local · stdionpm: @guardbee/mcp-dependency-auditor
Dns IntelligenceDNS record enumeration, misconfiguration and dangling-subdomain detection.Local · stdionpm: @guardbee/mcp-dns-intelligence
Elicitation AuditorMCP elicitation anti-patterns: secrets in forms, third-party authorize URLs, credentials in URLs.Local · stdionpm: @guardbee/mcp-elicitation-auditor
Llm RedteamActive jailbreak/extraction/obfuscation red-teaming for live LLM endpoints.Local · stdionpm: @guardbee/mcp-llm-redteam
MCP Config AuditorScans Cursor/Claude/Windsurf/VS Code MCP configs for unpinned versions, secrets, typosquats.Local · stdionpm: @guardbee/mcp-config-auditor
MCP Server AuditorScans MCP server tool definitions for excessive agency, injection sinks, hardcoded secrets.Local · stdionpm: @guardbee/mcp-server-auditor
Memory Poisoning ScannerScans agent code for untrusted input poisoning persistent cross-session memory.Local · stdionpm: @guardbee/mcp-memory-poisoning-scanner
Model ScannerScans ML model files (PyTorch, safetensors, Keras, ONNX) for supply-chain risks.Local · stdionpm: @guardbee/mcp-model-scanner

More developer servers

All 6,250 →
ServerRunsEndpoint or package
7IT SolutionsStore speed, web-app security checks, automation ROI, checklists and guides from 7IT Solutions.Remote · HTTP7it.co.il
8004swap MCPMCP server exposing 8004Swap (no-KYC agent-to-agent RFQ swap) as tools any MCP agent can call.Local · stdionpm: @stakemate/8004swap-mcp-server
8bitpeoples MCPUse this MCP server to 8bitpeoples, the free chiptune record label, browse the full release...Local · stdionpm: 8bitpeoples-mcp
930m310n MCPMCP server for the Geomelon geographic API — stdio and remote HTTP transports.Local · stdionpm: geomelon-mcp
A2A402 Agent Work RouterMCP server for routing useful work between autonomous agents through the A2A402 marketplace.Local · stdioOCI image (Docker): ghcr.io/jrcumminsent/a2a402-mcp:0.1.0
A2adependencyinspector MCPRemote MCP for A2A dependency inspector MCP, structured receipts, audit logs, and reviewer-ready evi.Remote · HTTPa2adependencyinspector.clauxel.com
A2ahubReliable handoffs between autonomous agents, using a Git repository both sides can inspect.Local · stdioMCP Bundle (.mcpb): ydnikolaev/a2ahub/releases/download/v0.26.3/a2a-
A2AL DaemonMakes any AI agent globally reachable and discoverable—no cloud, domain, or port forwarding needed.Local · stdionpm: a2ald