Skip to content

Add mcp-scan (npm), audits Claude Desktop and Claude Code configs - #28

Open
Abanoub-Rodolf wants to merge 1 commit into
efij:mainfrom
Abanoub-Rodolf:add-mcp-scan-npm
Open

Add mcp-scan (npm), audits Claude Desktop and Claude Code configs#28
Abanoub-Rodolf wants to merge 1 commit into
efij:mainfrom
Abanoub-Rodolf:add-mcp-scan-npm

Conversation

@Abanoub-Rodolf

Copy link
Copy Markdown

Adds the npm mcp-scan. Relevant to this list specifically because Claude Desktop and Claude Code config files are among the 17 AI tool clients it audits directly, checking for exposed secrets, prompt injection in tool descriptions, supply-chain and permission risks. 16 scanners, SARIF output for GitHub code scanning, MIT licensed.

It is a separate project from the invariantlabs-ai/mcp-scan already in this section (Python, now snyk-agent-scan). The entry says so explicitly to avoid the two being read as one.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant