Developer · Local MCP server

MCP ZAP Server

Safe, self-hosted ZAP operator for guided AI security scans and reports.

Visit MCP ZAP Server's website

What the MCP Registry states

The entry as published to the official MCP Registry (read 2026-10-04), latest version.

Registry name
io.github.dtkmn/mcp-zap-server
Version
0.14.0
Status
Active
Category
developer
Transport
Streamable HTTP
Package
OCI image (Docker)
Published
2026-10-03
Updated
2026-10-03
Publisher
dtkmn (GitHub)
Website
danieltse.org/mcp-zap-server/
Repository
github.com/dtkmn/mcp-zap-server
Source
Registry API entry

Packages

RegistryPackageVersionTransportEnvironment variables
OCI image (Docker)runtime: dockerghcr.io/dtkmn/mcp-zap-server:v0.14.0—HTTPZAP_API_URL, ZAP_API_PORT, ZAP_API_KEY (required, secret), MCP_API_KEY (required, secret), MCP_SERVER_TOOLS_SURFACE, MCP_SECURITY_MODE, MCP_SECURITY_ENABLED, MCP_SECURITY_ALLOW_PLACEHOLDER_API_KEY
OCI image (Docker)runtime: dockerdocker.io/dtkmn/mcp-zap-server:v0.14.0—HTTPZAP_API_URL, ZAP_API_PORT, ZAP_API_KEY (required, secret), MCP_API_KEY (required, secret), MCP_SERVER_TOOLS_SURFACE, MCP_SECURITY_MODE, MCP_SECURITY_ENABLED, MCP_SECURITY_ALLOW_PLACEHOLDER_API_KEY

How to connect MCP ZAP Server

MCP ZAP Server runs locally from a container image in an OCI registry such as Docker Hub or GitHub Container Registry: ghcr.io/dtkmn/mcp-zap-server:v0.14.0. The package starts a local server that speaks MCP over Streamable HTTP; the client then connects to it by URL (the entry names docker as the runtime). It reads these environment variables: ZAP_API_URL, ZAP_API_PORT, ZAP_API_KEY (required, secret), MCP_API_KEY (required, secret), MCP_SERVER_TOOLS_SURFACE, MCP_SECURITY_MODE, MCP_SECURITY_ENABLED and MCP_SECURITY_ALLOW_PLACEHOLDER_API_KEY; set them in the client's configuration for this server.

MCP ZAP Server runs locally from a container image in an OCI registry such as Docker Hub or GitHub Container Registry: docker.io/dtkmn/mcp-zap-server:v0.14.0. The package starts a local server that speaks MCP over Streamable HTTP; the client then connects to it by URL (the entry names docker as the runtime). It reads these environment variables: ZAP_API_URL, ZAP_API_PORT, ZAP_API_KEY (required, secret), MCP_API_KEY (required, secret), MCP_SERVER_TOOLS_SURFACE, MCP_SECURITY_MODE, MCP_SECURITY_ENABLED and MCP_SECURITY_ALLOW_PLACEHOLDER_API_KEY; set them in the client's configuration for this server.

Derived from the registry entry, not tested here. What the server does, and on what terms, is set by its publisher; check its repository or website before giving it access to your accounts or files. How to add an MCP server to an assistant · Before you connect

More developer servers

All 6,250 →
ServerRunsEndpoint or package
MCP WorldpayMCP server for Access Worldpay — enterprise processor: authorize, capture, refund, tokenize.Local · stdionpm: @codespar/mcp-worldpay
MCP Write GateSits in front of any MCP server. Reads pass, writes are checked against your lists.Local · stdioPyPI: mcp-write-gate
MCP YoloAn MCP server providing zero-shot object detection and segmentation using Ultralytics YOLOE.Local · stdioPyPI: mcp-yolo
MCP YotoMCP server for Yoto: manage cards, tracks, icons and family devices from any MCP client.Remote & Local · HTTP, stdiomcp-yoto.danpillay87.workers.dev
MCP ZenmlMCP server for discovering, reading, and changing ZenML resources with compact generic tools.Local · stdioOCI image (Docker): docker.io/zenmldocker/mcp-zenml:2.0.0
MCP ZuulZuul CI — build failure analysis, log search, pipeline status, and job configuration.Local · stdioPyPI: mcp-zuul
mcp-airlockGovernance proxy for MCP servers: allowlist, forced dry run, human confirmation, blast radius, audit.Local · HTTPPyPI: mcp-airlock
mcp-anythingMeta-MCP gateway: search, inspect and call any MCP server from the public registries.Local · stdionpm: mcp-anything