Skip to main content
Glama
Neeraj829784

OWASP ZAP MCP Server

by Neeraj829784

Server Configuration

Describes the environment variables required to run the server.

NameRequiredDescriptionDefault
MCP_BINDNoHost interface the MCP port binds to.127.0.0.1
ZAP_API_KEYNoMust match the ZAP daemon's key.
ZAP_BASE_URLNoZAP API base URL.http://zap:8080
CONNECT_TIMEOUTNoHTTP connect timeout (seconds).10
REQUEST_TIMEOUTNoHTTP timeout (seconds).60
ZAP_MAX_RETRIESNoRetry policy maximum retries.2
ZAP_RETRY_BACKOFFNoRetry policy backoff factor.0.5
ZAP_ALLOW_INSECURENoDev override: allow server to start without ZAP_API_KEY when set to true.false
ZAP_TARGET_ALLOWLISTNoComma-separated allowed host suffixes.
ZAP_MAX_RESPONSE_ITEMSNoCap on returned list items.500
ZAP_BLOCK_PRIVATE_TARGETSNoRefuse private/loopback targets.false

Instructions

Guidance the server publishes about itself, which clients place ahead of the tool catalog so the model reads it before choosing anything.

This server publishes no instructions, or was last inspected before Glama recorded them.

Capabilities

Server capabilities have not been inspected yet.

Tools

Functions exposed to the LLM to take actions

NameDescription

No tools

Prompts

Interactive templates invoked by user choice

NameDescription

No prompts

Resources

Contextual data attached and managed by the client

NameDescription

No resources