Best Snyk MCP Servers
Snyk is a developer security platform that helps developers build software securely, providing tools to find, fix, and monitor vulnerabilities in code, dependencies, containers, and infrastructure as code.
Why this server?
Integrates with Snyk for security scanning and vulnerability detection in the package dependencies.
AlicenseAqualityCmaintenanceMCP server for Polymarket trading automation — copy-trade top wallets, discover markets, monitor positions, and execute live/preview trades via the CLOB API.Last updated48275Why this server?
Provides complementary AI-specific security scanning that understands AI agent vulnerabilities not covered by traditional code scanners like Snyk.
Why this server?
Enables AI agents to trigger security scans for code, open-source dependencies, infrastructure as code (IaC), and container images, as well as retrieve findings, manage SBOM files, and handle Snyk authentication.

Snyk Studio MCPofficial
Alicense-qualityBmaintenanceAn MCP server that enables easy integration with coding assistants, providing security context to AI agents. This runs locally using the Snyk CLI.Last updated36Apache 2.0Why this server?
Scans for prompt injection, tool shadowing, toxic data flows, and hardcoded secrets.
Alicense-qualityAmaintenanceA proxy server that wraps any MCP server, adding behavioral profiling, security scanning, risk gating, and safe execution to its tools.Last updated6Apache 2.0Why this server?
Provides superior supply chain security compared to Snyk Agent Scan by offering npm package integrity verification specifically for MCP servers.
Alicense-quality-maintenanceMCP servers are installed via npx -y @scope/package — which silently downloads the latest version every time your AI tool starts, with no integrity check. mcp-lock fixes this by recording exact tarball hashes on first run and detecting any changes on every run after that — the same guarantee npm ci gives you for Node.js projects.Last updatedWhy this server?
Provides comprehensive security scanning and vulnerability management through both Snyk CLI tools (test, code analysis, container scanning, IaC scanning, SBOM generation) and REST API tools for querying projects, issues, and security findings across organizations.
Alicense-qualityFmaintenanceProvides security scanning capabilities through Snyk CLI tools and REST API, enabling AI assistants to test projects for vulnerabilities, retrieve security issues, and manage Snyk projects with comprehensive SAST, container, and infrastructure as code scanning.Last updated2MITWhy this server?
Allows for Snyk security scanning functionality, including repository security scanning and Snyk project scanning
Flicense-qualityFmaintenanceA standalone server enabling Snyk security scanning through the Model Context Protocol, with support for repository and project analysis, token verification, and CLI integration.Last updated15Why this server?
Integrates security vulnerability scanning into the isolated verification pipeline for submission gating.
Flicense-qualityCmaintenanceArcAgent MCP server for bounty discovery, workspace execution, and verified coding submissionsLast updated1Why this server?
Provides dependency vulnerability scanning to detect and manage security risks within project libraries.
Flicense-qualityCmaintenanceAn orchestrator that coordinates multiple security and quality tools like Semgrep and ESLint to provide comprehensive code analysis and scoring. It enables users to perform vulnerability scanning, architecture metrics, and impact analysis through CLI, REST, or MCP interfaces.Last updated1