Why this server?
This server provides code analysis and security scans, which are related to penetration testing.
Alicense-qualityCmaintenanceA Model Context Protocol tool for analyzing code repositories, performing security scans, and assessing code quality across multiple programming languages.Last updated2MITWhy this server?
This secure shell command execution server is designed for integration with Claude and other MCP-compatible LLMs, useful for executing pentesting commands.
Why this server?
Enables secure shell command execution within a controlled environment, important for running penetration testing tools safely.
AlicenseCqualityDmaintenanceA Node.js implementation of the Model Context Protocol that provides secure shell command execution capabilities, allowing AI models like Claude to run shell commands in a controlled environment with built-in security measures.Last updated142941MITWhy this server?
A demonstration server that allows large language models to perform penetration testing tasks autonomously by interfacing with the Mythic C2 framework.
Flicense-qualityCmaintenanceA demonstration server that allows large language models to perform penetration testing tasks autonomously by interfacing with the Mythic C2 framework.Last updated74Why this server?
Enables code scanning for security vulnerabilities, which is essential for penetration testing.

Semgrep MCP Serverofficial
AlicenseBqualityFmaintenanceAn MCP server that provides a comprehensive interface to Semgrep, enabling users to scan code for security vulnerabilities, create custom rules, and analyze scan results through the Model Context Protocol.Last updated6668MITWhy this server?
A Model Context Protocol server for dnstwist, a powerful DNS fuzzing tool that helps detect typosquatting, phishing, and corporate espionage, which is relevant to penetration testing.
Alicense-qualityFmaintenanceA Model Context Protocol (MCP) server for dnstwist, a powerful DNS fuzzing tool that helps detect typosquatting, phishing, and corporate espionage.Last updated5550MITWhy this server?
Provides accessibility testing capabilities, which can help identify vulnerabilities related to accessibility during a pentest.
AlicenseBqualityDmaintenanceProvides accessibility testing capabilities through CLI, helping identify accessibility issues in web applications using axe-core and Puppeteer.Last updated12MITWhy this server?
A secure server that enables AI applications to execute shell commands in specified directories, supporting multiple shell types with built-in security features like directory isolation and timeout control, important for a pentest.
AlicenseBqualityFmaintenanceA secure server that enables AI applications to execute shell commands in specified directories, supporting multiple shell types (bash, sh, cmd, powershell) with built-in security features like directory isolation and timeout control.Last updated120Apache 2.0Why this server?
Integrates with Sumo Logic's API to enable log search, supporting error handling, and easy deployment via Docker which could be used during pentesting to analyze logs.
Flicense-qualityDmaintenanceIntegrates with Sumo Logic's API to enable log search with configurable queries and time ranges, supporting error handling and easy deployment via Docker.Last updated8011