semgrep / mcp
A MCP server for using Semgrep to scan code for security vulnerabilities.
☆148Updated 2 weeks ago
Alternatives and similar repositories for mcp
Users that are interested in mcp are comparing it to the libraries listed below
Sorting:
- A very simple open source implementation of Google's Project Naptime☆142Updated last month
- MCP for Security: A collection of Model Context Protocol servers for popular security tools like SQLMap, FFUF, NMAP, Masscan and more. In…☆102Updated this week
- A powerful tool that leverages AI to automatically generate comprehensive security documentation for your projects☆76Updated last week
- A research project to add some brrrrrr to Burp☆165Updated 3 months ago
- ☆64Updated 3 months ago
- A web CTF for training developers in bug hunting and secure coding!☆99Updated 4 months ago
- Focused malicious code detection ruleset, with a high protection-to-noise ratio☆118Updated 2 months ago
- ☆96Updated last week
- ☆182Updated 3 weeks ago
- Automated web vulnerability scanning with LLM agents☆311Updated 2 months ago
- RedFlag uses AI to identify high-risk code changes. Run it in batch mode for release candidate testing or in CI pipelines to flag PRs and…☆149Updated 5 months ago
- A YAML based format for describing tools to LLMs, like man pages but for robots!☆71Updated last week
- AIGoat: A deliberately Vulnerable AI Infrastructure. Learn AI security through solving our challenges.☆234Updated 3 weeks ago
- ☆65Updated 5 months ago
- boostsecurityio/lotp☆125Updated last month
- Secure Code Review AI Agent (SeCoRA) - AI SAST☆48Updated 3 months ago
- Create notes during a security code review in VSCode 📝 Import your favorite SAST tool findings 🛠️ and collaborate with others 🤝☆133Updated last month
- A multifaceted security tool which leverages Public GitHub REST APIs for OSINT, Forensics, Pentesting and more.☆138Updated 2 weeks ago
- XBOW Validation Benchmarks☆88Updated 8 months ago
- GitHub Attack Toolkit - Extreme Edition - A static analysis and exploit toolkit for GitHub Actions.☆330Updated this week
- Octoscan is a static vulnerability scanner for GitHub action workflows.☆210Updated last month
- A tool to uncover undocumented APIs from the AWS Console.☆102Updated 2 weeks ago
- tool designed for identifying vulnerabilities in open source codebases at scale. It can gather and filter on key repository metrics such …☆226Updated 3 months ago
- ☆73Updated 2 weeks ago
- 🔥🔒 Awesome MCP (Model Context Protocol) Security 🖥️☆159Updated this week
- 🧪 Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.☆39Updated 5 months ago
- Enumeration/exploit/analysis/download/etc pentesting framework for GCP; modeled like Pacu for AWS; a product of numerous hours via @Webbi…☆246Updated this week
- Automated vulnerability discovery and annotation☆67Updated 9 months ago
- A plugin-based gateway that orchestrates other MCPs and allows developers to build upon it enterprise-grade agents.☆157Updated 3 weeks ago
- A full insecure kubernetes application for testing security tools☆86Updated 3 weeks ago