sahiloj/MCPScan

Offensive MCP server auditor — detects tool poisoning, credential leaks, RCE vectors, SSRF, session hijacking, and supply chain vulnerabilities across stdio, HTTP, and SSE transports.

36
/ 100
Emerging
No Package No Dependents
Maintenance 13 / 25
Adoption 4 / 25
Maturity 9 / 25
Community 10 / 25

How are scores calculated?

Stars

6

Forks

1

Language

TypeScript

License

MIT

Last pushed

Mar 11, 2026

Commits (30d)

0

Get this data via API

curl "https://pt-edge.onrender.com/api/v1/quality/mcp/sahiloj/MCPScan"

Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.