Audit MCP servers for security risks by analyzing tool permissions, data flow vulnerabilities, and input validation before installation.
Apache 2.0
MCP server for static security analysis of Android source code
Audits any MCP server for command injection, path traversal, missing auth, hardcoded secrets, SQL injection, SSRF and tool poisoning. Returns grade A-F with CVE references. Malicious servers flagged network-wide after audit. Now with shared learning brain.