heimdall
io.github.caglarbozkurt/heimdall
Scan an MCP server or agent config for injection, exfiltration, and risky capabilities.
Description as published in the official MCP registry.
What we measured
| Endpoint | None listed (runs locally) | registry |
|---|---|---|
| GitHub stars | 0 | github.com/caglarbozkurt/mcp-heimdall |
| Last push | 2026-07-06 | GitHub API |
| Licence | MIT | GitHub API |
| Registry version | 0.5.1 · active · updated 2026-07-05 | registry |
| Package | npm: mcp-heimdall-scan | registry |
Signed reports
No signed reports yet. A report carries a signed decision record from the reporter's gate, so it shows a real call went through, not just an opinion. How to file one.
Connect
npx -y mcp-heimdall-scanCommands are built from the registry entry. Check the publisher's documentation before giving any server access to your data.
Related servers
- Heimdall Every App Store Connect + StoreKit 2 endpoint. 895 tools in 13 profiles, narrow to 27.
- heimdall 🛡️ MCP Heimdall - Advanced Environment Architect & Diagnostic Tool.
Badge for your README
Shows the result of our latest check and links back to this page.
[](https://openforallofus.com/tools/io.github.caglarbozkurt/heimdall)Agents can read this page as data: MCP endpoint https://openforallofus.com/api/mcp, tool get_tool with name io.github.caglarbozkurt/heimdall.