Developer · Local MCP server
MCP Server Auditor
Scans MCP server tool definitions for excessive agency, injection sinks, hardcoded secrets.
What the MCP Registry states
The entry as published to the official MCP Registry (read 2026-10-04), latest version.
- Registry name
io.github.4hmetuyar/mcp-server-auditor- Version
- 0.1.5
- Status
- Active
- Category
- developer
- Transport
- stdio (local process)
- Package
- npm
- Published
- 2026-09-28
- Updated
- 2026-09-28
- Publisher
- 4hmetuyar (GitHub) · 26 servers with pages here
- Repository
- github.com/GuardBee/guardbee-mcp (folder packages/mcp-server-auditor)
- Source
- Registry API entry
Packages
| Registry | Package | Version | Transport |
|---|---|---|---|
| npm | @guardbee/mcp-server-auditor | 0.1.5 | stdio |
How to connect MCP Server Auditor
MCP Server Auditor runs locally from a Node.js package published to the npm registry: @guardbee/mcp-server-auditor version 0.1.5. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs Node.js; clients usually start it with npx — the usual command is npx -y @guardbee/mcp-server-auditor@0.1.5.
In the mcpServers JSON format that many desktop and editor MCP clients read, the entry looks like this (placeholders in angle brackets):
{
"mcpServers": {
"mcp-server-auditor": {
"command": "npx",
"args": [
"-y",
"@guardbee/mcp-server-auditor@0.1.5"
]
}
}
}Derived from the registry entry, not tested here. What the server does, and on what terms, is set by its publisher; check its repository or website before giving it access to your accounts or files. How to add an MCP server to an assistant · Before you connect
More from 4hmetuyar (GitHub)
| Server | Runs |
|---|---|
| Db GatewayKVKK/GDPR-compliant LLM-to-database gateway: PII masking, RBAC, rate limiting, audit log. | Local · stdio |
| Dependency AuditorCVE scanning for npm/pip/cargo dependencies via OSV. | Local · stdio |
| Dns IntelligenceDNS record enumeration, misconfiguration and dangling-subdomain detection. | Local · stdio |
| Elicitation AuditorMCP elicitation anti-patterns: secrets in forms, third-party authorize URLs, credentials in URLs. | Local · stdio |
| Llm RedteamActive jailbreak/extraction/obfuscation red-teaming for live LLM endpoints. | Local · stdio |
| MCP Config AuditorScans Cursor/Claude/Windsurf/VS Code MCP configs for unpinned versions, secrets, typosquats. | Local · stdio |
| Memory Poisoning ScannerScans agent code for untrusted input poisoning persistent cross-session memory. | Local · stdio |
| Model ScannerScans ML model files (PyTorch, safetensors, Keras, ONNX) for supply-chain risks. | Local · stdio |
| Oauth AuditorScans MCP server auth code for OAuth 2.1 anti-patterns: token passthrough, missing audience. | Local · stdio |
| Prompt Injection ScannerScans RAG content/scraped pages for indirect prompt injection. | Local · stdio |
| Prompt Leak ScannerCatches leaked credentials and PII in outbound LLM prompts. | Local · stdio |
| Rug Pull DetectorBaselines an MCP server's tools and detects tool-definition changes after approval. | Local · stdio |
More developer servers
| Server | Runs |
|---|---|
| MCP Server 3daistudioMCP server for 3D AI Studio — generate 3D models from text or images using Hunyuan and TRELLIS. | Local · stdio |
| MCP Server Agent AnalyticsTrack AI agent fleet performance, costs, anomalies, and trends. | Local · stdio |
| MCP Server AnalyzerMCP server for Python, JavaScript, and TypeScript code analysis with Ruff, ty, Vulture, and Biome. | Local · stdio |
| MCP Server AttestationEd25519-signed MCP tool manifests + spawn attestation. Layer-2 supply-chain hardening. | Local · stdio |
| MCP Server BrowserbaseMCP server for AI web browser automation using Browserbase and Stagehand. | Local · stdio |
| MCP Server CalCal.com scheduling MCP server: manage bookings, event types, and availability. | Local · stdio |
| MCP Server ClawhubClawHub.ai skill catalog: search, browse, inspect, and download skills (token publish). | Local · stdio |
| MCP Server Cloud FsCloud replacement for mcp-server-filesystem — 20 tools for S3, Azure Blob, and GCS. | Local · stdio |