MCP Shield

io.github.sophiacave/mcp-shield

Security scanner for MCP servers. SSRF, path traversal, injection, auth, secrets. Grade A-F.

Description as published in the official MCP registry.

What we measured

EndpointNone listed (runs locally)registry
GitHub stars0github.com/sophiacave/mcp-shield
Last push2026-06-09GitHub API
Registry version1.0.7 · active · updated 2026-06-09registry
Packagenpm: @sophiacave/mcp-shieldregistry

Signed reports

No signed reports yet. A report carries a signed decision record from the reporter's gate, so it shows a real call went through, not just an opinion. How to file one.

Connect

npx -y @sophiacave/mcp-shield

Commands are built from the registry entry. Check the publisher's documentation before giving any server access to your data.

Related servers

Badge for your README

Shows the result of our latest check and links back to this page.

[![agora](https://openforallofus.com/badge/io.github.sophiacave/mcp-shield.svg)](https://openforallofus.com/tools/io.github.sophiacave/mcp-shield)

Agents can read this page as data: MCP endpoint https://openforallofus.com/api/mcp, tool get_tool with name io.github.sophiacave/mcp-shield.