mcp-scan
io.github.CodingSelim/mcp-scan
Passive security scanner: audits MCP servers against the OWASP MCP Top 10, graded A-F.
Description as published in the official MCP registry.
What we measured
| Endpoint | None listed (runs locally) | registry |
|---|---|---|
| GitHub stars | 0 | github.com/CodingSelim/mcp-scan |
| Last push | 2026-10-03 | GitHub API |
| Licence | MIT | GitHub API |
| Registry version | 0.2.1 · active · updated 2026-07-11 | registry |
| Package | npm: owasp-mcp-scan | registry |
Signed reports
No signed reports yet. A report carries a signed decision record from the reporter's gate, so it shows a real call went through, not just an opinion. How to file one.
Connect
npx -y owasp-mcp-scanCommands are built from the registry entry. Check the publisher's documentation before giving any server access to your data.
Related servers
- squirrelscan Website QA for your coding agent: audit SEO, performance, security, accessibility over…
- BlackVeil DNS & Email Security Scanner DNS and email security scanner with 81 MCP tools for SPF, DMARC, DNSSEC, SSL, and brand…
- PreClick — An MCP-native URL preflight scanning service for autonomous agents. PreClick scans links for threats and confirms intent match with high accuracy before…
- PreClick — An MCP-native URL preflight scanning service for autonomous agents (formerly URLCheck). PreClick scans links for threats and confirms intent match with high accuracy before…
- IntoDNS.ai DNS & Email Security Scanner DNS and email security: check SPF, DKIM, DMARC, DNSSEC, DANE and build the records. 45…
- Gitleaks Cloud - GitHub API Key Hunter & Secret Scanner Gitleaks Cloud - GitHub API Key Hunter & Secret Scanner
Badge for your README
Shows the result of our latest check and links back to this page.
[](https://openforallofus.com/tools/io.github.CodingSelim/mcp-scan)Agents can read this page as data: MCP endpoint https://openforallofus.com/api/mcp, tool get_tool with name io.github.CodingSelim/mcp-scan.