SERVER

agent-security-scanner

Rank #51929

smithery/prooflayer/agent-security-scanner

Security scanner MCP server that protects AI coding agents from generating vulnerable code. Features: • 275+ security rules for Python, JavaScript, TypeScript, Java, Go, Ruby, PHP, C/C++, Rust, C#, Terraform, Kubernetes • AST-based detection with tree-sitter (falls back to regex when unavailable) • Taint analysis for tracking user input to dangerous sinks • Package hallucination detection across 4.3M+ packages (npm, PyPI, RubyGems, crates.io, pub.dev, CPAN, Raku) • Prompt injection detection for AI agent security • Automatic fix suggestions for common vulnerabilities • CWE/OWASP metadata for compliance Tools: • scan_security - Scan files for vulnerabilities • fix_security - Auto-fix security issues • check_package - Verify if a package exists or is hallucinated • scan_agent_prompt - Detect prompt injection attacks • list_security_rules - View all available rules • list_package_stats - Package database statistics Zero config - works instantly with npx.

Not versioned
First listed
Feb 6, 2026
Last publish date
OVERVIEW

agent-security-scanner is a Model Context Protocol (MCP) server. It ranks #51929 of 58,832 servers tracked on MCP Toplist. agent-security-scanner is listed on Smithery, and ships as a single rolling release with no explicit version metadata. It was first listed on Feb 6, 2026.

STANDING
#51,929of 58,832 tracked servers

Ranks ahead of 6,903 of 58,832 servers on MCP Toplist.

REGISTRIES

Listed on 1 registry

VERSIONS

Not versioned

This server is published through a registry that does not expose explicit version metadata. The listing tracks a single rolling release.

FAQ

Frequently asked questions

What is agent-security-scanner?
Security scanner MCP server that protects AI coding agents from generating vulnerable code. Features: • 275+ security rules for Python, JavaScript, TypeScript, Java, Go, Ruby, PHP, C/C++, Rust, C#, Terraform, Kubernetes • AST-based detection with tree-sitter (falls back to regex when unavailable) • Taint analysis for tracking user input to dangerous sinks • Package hallucination detection across 4.3M+ packages (npm, PyPI, RubyGems, crates.io, pub.dev, CPAN, Raku) • Prompt injection detection for AI agent security • Automatic fix suggestions for common vulnerabilities • CWE/OWASP metadata for compliance Tools: • scan_security - Scan files for vulnerabilities • fix_security - Auto-fix security issues • check_package - Verify if a package exists or is hallucinated • scan_agent_prompt - Detect prompt injection attacks • list_security_rules - View all available rules • list_package_stats - Package database statistics Zero config - works instantly with npx.
Is agent-security-scanner an official MCP server?
agent-security-scanner is not on the Official MCP Registry. It is listed on Smithery.
How many versions does agent-security-scanner have?
agent-security-scanner ships as a single rolling release with no explicit version metadata.
EXPLORE
agent-security-scanner - MCP Server #51929 | MCP Toplist