ShipSafe — Independent security verification
co.ship-safe/scanner
Independent security review for AI-built apps: exposed secrets, broken auth, unsafe data access.
Description as published in the official MCP registry.
Answers, but requires sign-in before the handshake. Checked 2026-10-04.
What we measured
| Endpoint | https://ship-safe.co/api/mcp | registry |
|---|---|---|
| Handshake | Answers, but requires sign-in before the handshake (447 ms) | our check, 2026-10-04 |
| Registry version | 0.6.4 · active · updated 2026-09-28 | registry |
| Package | npm: @ship-safe/mcp | registry |
Signed reports
No signed reports yet. A report carries a signed decision record from the reporter's gate, so it shows a real call went through, not just an opinion. How to file one.
Connect
claude mcp add --transport http scanner https://ship-safe.co/api/mcpnpx -y @ship-safe/mcpCommands are built from the registry entry. Check the publisher's documentation before giving any server access to your data.
Related servers
- BlackVeil DNS & Email Security Scanner DNS and email security scanner with 81 MCP tools for SPF, DMARC, DNSSEC, SSL, and brand…
- Vibes-Coded Agent Security and Commerce Tools Agent supply-chain security, scanner consensus, x402 reliability, and commerce MCP tools.
- IntoDNS.ai DNS & Email Security Scanner DNS and email security: check SPF, DKIM, DMARC, DNSSEC, DANE and build the records. 45…
- Android Security Analyzer MCP server for static security analysis of Android source code
- HubVibe: Pay-per-Call Data Analysis, Research, Verification and Dev Tools for AI Agents Pay per call via HTTP 402: 5 site audits + 47 /work jobs as MCP tools and A2A skills…
- Security Recipes Read-only CVE intelligence, remediation playbooks, and agent setup guides. Not a scanner.
Agents can read this page as data: MCP endpoint https://openforallofus.com/api/mcp, tool get_tool with name co.ship-safe/scanner.