1. Conduid
  2. Marketplace
  3. #sast
Tag

MCP servers tagged sast

21 live MCP servers tagged "sast", ranked by trust score. Tags come from package metadata and repository topics, so this list covers servers across every category that work with sast.

21
live servers
44
avg trust
614
most stars
1

Automated Security Helper

awslabs

ASH is an extensible, open source SAST, SCA, and IaC security scanner orchestration engine.

★ 614updated 6 months agoApache-2.0
87
2

Snyk

snyk

Language Server used by IDEs as Snyk Backend for Frontends

★ 75updated 6 months agoApache-2.0
70
3

Fuzzforge AI

AI-powered workflow automation and AI Agents platform for AppSec, Fuzzing & Offensive Security. Automate vulnerability discovery with intelligent fuzzing, AI-driven analysis, and…

59
4

Secpipe

MCP server for AI-driven security pipelines

59
5

Lucidshark

Ship AI-generated code without the fear

52
6

fr0gger/MCP_Security

fr0gger

AICLUDE Security Vulnerability Scanner - MCP Server for querying vulnerability scan results

★ 47updated a year ago
46
7

Cycode CLI

Boost security in your dev lifecycle via SAST, SCA, Secrets & IaC scanning

44
8

Eslint Plugin MCP SDK Security

ESLint plugin for Model Context Protocol (MCP) SDK security — catches tools registered without an input schema, handlers reading arguments the schema never declared, model-visible…

42
9

Security Scanner

55-tool MCP server for security scanning of MCP servers. Runtime inspection, AST-based SAST, config audit, dependency analysis, OWASP MCP Top 10 compliance. OAuth, TLS, fuzz testi…

39
10

Codescan

Agent-native code security review with MCP, structured findings, and practical pre-merge scanning workflows.

39
11

Codeslick MCP Server

CodeSlick Security Analysis MCP Server - 323 security checks across 5 languages + 17 MCP-specific behavioral checks + AI code detection

37
12

Mcpguard

Security scanner for MCP servers — detect tool poisoning, malicious code patterns, and supply-chain risks before your AI agents execute them.

37
13

Mcpeek

Source-code-level security scanner for MCP (Model Context Protocol) server implementations

37
14

Oauthlint

Model Context Protocol server for OAuthLint. Lets AI coding tools scan their own generated OAuth/OIDC/JWT/session/CORS code for the anti-patterns OAuthLint catches, in-loop.

37
15

Repomri

A zero-dependency MRI scan for your AI coding agent attack surface.

37
16

Github Security MCP

GitHub security posture analysis for AI agents — 39 MCP tools, 45 checks across org, repos, Actions, secrets, supply chain, and access control

34
17

goklab/guardvibe

commit hook, and CVE version detection. Zero config, runs locally.

34
18

VibeGuard

Free security & privacy scanner for AI-coded apps. 766 rules, 84 MCP tools, 13-layer defense, zero-trust sandbox, AI firewall. Runs locally, never sends data anywhere. Scan your A…

34
19

srinivasan-sundaresan95/orihime

reading baseline. `pip install orihime`

34
20

Honeybadger

Security scanner for AI agent skills and MCP servers. Detects secrets, CVEs, supply chain attacks, and prompt injection in SKILL.md files before they're installed. Pre-install gat…

34
21

Pledgeguard

Rust-native secret scanner with MCP server, AST refinement, and WASM plugins

34
← Previous Page 1 of 1 Next →