Skip to main content
Glama
mastrophot

mcp-contract-security

by mastrophot

mcp-contract-security

MCP-Server für die Sicherheitsprüfung von Smart Contracts.

Implementiert die erforderlichen Tools:

  • scan_contract

  • compare_security_models

  • audit_checklist

Unterstützte Sprachen:

  • solidity

  • rust

  • typescript

Was geprüft wird

scan_contract erkennt derzeit heuristische Muster für:

  • Reentrancy

  • Integer-Overflow/Underflow-Risiko

  • Zugriffskontrollprobleme

  • Front-Running-Exposition

  • Oracle-Manipulationsrisiko

Die Ausgabe umfasst:

  • Schwachstellenliste mit Schweregrad/Typ/Zeile

  • security_score

  • near_equivalent_score

  • NEAR-spezifische Sicherheitshinweise und Empfehlung

Related MCP server: meok-mcp-injection-scan-mcp

Installation

npm install -g mcp-contract-security

Veröffentlichtes Paket:

MCP-Konfiguration (Claude Desktop)

{
  "mcpServers": {
    "contract-security": {
      "command": "mcp-contract-security"
    }
  }
}

Tool-Nutzung

scan_contract

Eingabe:

{
  "code": "contract source code here",
  "language": "solidity"
}

compare_security_models

Eingabe (optional):

{
  "language": "solidity"
}

audit_checklist

Eingabe (optional):

{
  "language": "rust"
}

Lokale Entwicklung

npm install
npm run check

Lieferbare Assets

Zusätzliche Veröffentlichungs-Assets sind in deliverables/ vorbereitet:

  • deliverables/mcp-registry-submission.md

  • deliverables/security-subreddit-posts.md

  • deliverables/blog-why-near-contracts-safer.md

  • server.json (MCP-Registry-Metadaten, schema-validiert)

Lizenz

MIT

Install Server
A
license - permissive license
A
quality
C
maintenance

Maintenance

Maintainers
Response time
Release cycle
1Releases (12mo)
Commit activity

Resources

Unclaimed servers have limited discoverability.

Looking for Admin?

If you are the server author, to access and configure the admin panel.

Related MCP Servers

  • A
    license
    Not graded
    quality
    C
    maintenance
    Security scanner for MCP servers. Detects prompt injection, command injection, auth bypass, and excessive permissions across tools, resources, and prompts.
    48
    2
    MIT
  • A
    license
    A
    quality
    C
    maintenance
    Scans MCP servers for prompt-injection, tool-poisoning, and SSRF vulnerabilities using 30+ canonical rules across 5 severity tiers, with optional signed safety reports for procurement.
    5
    MIT
  • F
    license
    Not graded
    quality
    B
    maintenance
    An MCP server that statically audits Solidity smart contracts for common vulnerabilities like reentrancy and access control, enabling developers to identify and fix security issues via natural language.
  • F
    license
    Not graded
    quality
    D
    maintenance
    Enables scanning Solidity smart contracts for 13 vulnerability classes using pattern-based analysis; provides full audit, quick scan, gas analysis, and detector catalog through MCP tools.

View all related MCP servers

Related MCP Connectors

  • Security scanner for MCP servers. Detect vulnerabilities, prompt injection, and tool poisoning.

  • Zero-config MCP security scanner for AI-generated apps. 25K+ vulnerability patterns.

  • Scans MCP servers for tool poisoning, prompt injection and supply chain risks.

View all MCP Connectors

Latest Blog Posts

MCP directory API

We provide all the information about MCP servers via our MCP API.

curl -X GET 'https://glama.ai/api/mcp/v1/servers/mastrophot/near-mcp-contract-security'

If you have feedback or need assistance with the MCP directory API, please join our Discord server