- Conduid
- Marketplace
- #code-scanning
MCP servers tagged code-scanning
8 live MCP servers tagged "code-scanning", ranked by trust score. Tags come from package metadata and repository topics, so this list covers servers across every category that work with code-scanning.
Vibescan
Security scanner for AI-generated ("vibe-coded") code. Runs SAST, DAST, and sandboxed exploit simulation across 15+ languages using 30+ tools. Catches what LLMs introduce bef…
Sentinel AI
Real-time AI safety guardrails for LLM apps. 10 scanners: prompt injection, PII, harmful content, code vulnerabilities, obfuscation detection. Sub-ms latency. Python + TypeScript…
Assay Agent Gate Demo
Runnable demo: a CI gate that denies an agent's undeclared privileged tool action before it runs, with evidence in the Security tab. Built on assay.
Scan Action
The first GitHub Action that scans MCP servers, AI agents & LLM pipelines for security vulnerabilities. 24 checks: tool poisoning, SSRF, prompt injection, DataFlow taint. Results…
Codetrellis Matrix
Open-source project awareness engine for AI coding tools via compressed codebase context, MCP, and editor integrations.
Plimsoll Action
Review what an AI agent release changed at runtime (files, network, MCP tools), gate the PR, and report findings in code scanning. For AI platform and security teams.
Agent Rules Audit
Offline scanner for AI agent instruction files (AGENTS.md, CLAUDE.md, .cursorrules, skills, MCP configs) — flags prompt-injection payloads, hidden Unicode, encoded blobs, exfiltra…
Riskmap
Local-first static auditor for risky MCP and agent-tool repository patterns.