Developer · Local MCP server

mcp-scan

Passive security scanner: audits MCP servers against the OWASP MCP Top 10, graded A-F.

Visit mcp-scan's website

What the MCP Registry states

The entry as published to the official MCP Registry (read 2026-10-04), latest version.

Registry name
io.github.CodingSelim/mcp-scan
Version
0.2.1
Status
Active
Category
developer
Transport
stdio (local process)
Package
npm
Published
2026-07-11
Updated
2026-07-11
Publisher
CodingSelim (GitHub)
Website
github.com/CodingSelim/mcp-scan
Repository
github.com/CodingSelim/mcp-scan
Source
Registry API entry

Packages

RegistryPackageVersionTransportEnvironment variables
npmruntime: npxowasp-mcp-scan0.2.1stdioNone declared

How to connect mcp-scan

mcp-scan runs locally from a Node.js package published to the npm registry: owasp-mcp-scan version 0.2.1. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs Node.js; clients usually start it with npx — the usual command is npx -y owasp-mcp-scan@0.2.1.

In the mcpServers JSON format that many desktop and editor MCP clients read, the entry looks like this (placeholders in angle brackets):

{
  "mcpServers": {
    "mcp-scan": {
      "command": "npx",
      "args": [
        "-y",
        "owasp-mcp-scan@0.2.1"
      ]
    }
  }
}

Derived from the registry entry, not tested here. What the server does, and on what terms, is set by its publisher; check its repository or website before giving it access to your accounts or files. How to add an MCP server to an assistant · Before you connect

More developer servers

All 6,250 →
ServerRunsEndpoint or package
mcp-diggerProgressive on-demand access to.NET NuGet package source for AI coding agents.Local · stdionpm: mcp-digger
mcp-gatehousePermission tiers, approval gates, and audit logging for MCP servers - the server is the gatekeeper.Local · stdioPyPI: mcp-gatehouse
mcp-hubMany stdio MCP servers from one container, published over HTTPS with OAuth 2.1 for any MCP client.Local · stdio, HTTPnpm: @ni-c/mcp-hub
mcp-lintLint MCP tool schemas for cross-client compatibility and agent preflight safety.Local · stdionpm: mcp-lint
mcp-server-sigmaMCP server for Sigma Computing. Provision dashboards, build models, and automate cloud analytics.Local · stdioPyPI: mcp-server-sigma
mcp-server-smartsheet-rmMCP server for Smartsheet Resource Management (10,000ft API) time tracking and scheduling.Local · stdioPyPI: mcp-server-smartsheet-rm
mcp-trustCheck the danger grade of any public MCP server before you connect.Local · stdioPyPI: mcp-trust
mcp-usageFind out which MCP servers you actually use: local, read-only audit of Claude Code transcripts.Local · stdionpm: @rixtay/mcp-usage