GenAiHub

Last checked 6 October 2026 — responded normally.

Compuute MCP Security Scanner

Static security scanner for MCP servers. POST a public GitHub URL, get severity counts, a score, and the top findings w…

Live
Open / InstallLast updated October 6, 2026

Description

Static security scanner for MCP servers. POST a public GitHub URL, get severity counts, a score, and the top findings with file+line back. 37 rules across TypeScript, JavaScript, Python, Go, Rust, C#, Java, and Kotlin — every language with an official MCP SDK. Detects argument injection for npx/uvx/pipx/pnpx runner binaries (CWE-88), known CVEs in 40+ top packages, and the usual L0 discovery (transport, tool inventory, dependency pinning). This is a pattern detector, not an exploitability oracle. Around 90% raw false-positive rate on unfiltered output — triage is on you, and the response says so explicitly. POST /v1/scan is free with no API key. POST /v1/scan/pay charges $0.10 USDC per scan via x402 on Base. Manual L2-L4 audits at compuute.se/audit when you need dataflow review. Wraps compuute-scan (MIT, zero deps). Per-rule false-positive rates and the methodology paper live in the repo.

Community Metrics

Views
1,597
Avg Rating
N/A
Ratings
0
Likes
0
Comments
—

Author

daniel-abbay

Platform

mcp

Pricing model

free

Categories

  • mcp

Tags

  • mcp
  • smithery

Capabilities

  • Remote MCP server

Information

TypeMCP Server
SourceSmithery
AddedOctober 6, 2026

Comments

?

Others in the same category, ranked by how often they are opened.