Why this server?
This server offers code scanning for security vulnerabilities, which would be relevant for detecting XSS and SQL injection issues in code repositories.
-securityAlicense-qualityA Model Context Protocol tool for analyzing code repositories, performing security scans, and assessing code quality across multiple programming languages.Last updated2MITWhy this server?
This server provides code scanning capabilities for security vulnerabilities using Semgrep, directly addressing the detection of XSS and SQL injection issues.

Semgrep MCP Serverofficial
AsecurityAlicenseBqualityAn MCP server that provides a comprehensive interface to Semgrep, enabling users to scan code for security vulnerabilities, create custom rules, and analyze scan results through the Model Context Protocol.Last updated6649MITWhy this server?
While not directly related to XSS or SQL injection, this tool aids in debugging GitHub Actions workflows, which can indirectly involve security checks or vulnerability detection processes.
-securityFlicense-qualityA utility that helps diagnose and fix GitHub Actions workflow failures by analyzing run logs, identifying common failure patterns, and suggesting specific fixes through a structured decision tree.Last updated1Why this server?
This server allows users to scan their projects for vulnerabilities, including those related to code dependencies that could be exploited for XSS or SQL injection.
-securityAlicense-qualityProvides Trivy security scanning capabilities through a standardized interface, allowing users to scan projects for vulnerabilities and automatically fix them by updating dependencies.Last updated10MITWhy this server?
While it doesn't directly detect XSS/SQLi, the description mentions it is a secure command execution, which is relevant to prevent command injection type vulnerabilities.
Why this server?
This server can detect typosquatting and phishing, which could lead to users being redirected to malicious sites that attempt XSS or other attacks.
-securityAlicense-qualityA Model Context Protocol (MCP) server for dnstwist, a powerful DNS fuzzing tool that helps detect typosquatting, phishing, and corporate espionage.Last updated7348MITWhy this server?
Can interact with web browsers to simulate user behavior, which could be used to identify if XSS is triggerable.
AsecurityAlicenseBqualityA browser automation agent that enables Claude to interact with web browsers through the Model Context Protocol, allowing for actions like navigating websites, manipulating elements, and managing browser state.Last updated28MITWhy this server?
Describes secure command execution, relevant in the context of security, and potentially preventing command injection or similar vulnerabilities.
AsecurityAlicenseBqualityA secure MCP server for Windows Subsystem for Linux environments, facilitating safe command execution with extensive validation and protection against vulnerabilities like shell injection and dangerous commands.Last updated74317MITWhy this server?
A modular server supporting multiple services including web automation; can be configured to include vulnerability scanning tools relevant to detecting XSS and SQL injection.
-securityAlicense-qualityA modular server that implements the Model Context Protocol standard, providing tools for interacting with GitHub, GitLab, Google Maps, Memory storage, and web automation through a unified gateway.Last updated3303Apache 2.0