qianniuspace/mcp-security-audit

View on GitHub ↗

A powerful MCP (Model Context Protocol) Server that audits npm package dependencies for security vulnerabilities. Built with remote npm registry integration for real-time security checks.

56 ★9 forksTypeScriptUpdated 1y ago

What you need to know

An MCP server for security auditing of codebases, performing scans for vulnerabilities, secrets, and dependency issues and reporting findings to assistants.

Install

Run the server against a target repository and register with the MCP client.

Usage

  • Request a security audit of a codebase; review vulnerabilities, secrets, and dependency risks.

Key features

  • vulnerability scanning
  • secret detection
  • dependency audit
  • security reports

Best for

AI-assisted security review of source code.

Platforms: macOS · Linux · Windows

Reviewed 2026-08-11

Topics

auditmodel-context-protocolnpmsecurity
Stars
56★
Forks
9
Language
TypeScript
License
MIT
Created
2025-02-20
Last push
2025-07-18