Agent♥︎Age
Catalog

Draugr

Official

by draugr-dev · Go

Security scanning for AI agents: SAST, SCA, secrets, IaC, DAST, ranked by real risk.

dev.draugr/draugr MCP Server

This MCP server provides security scanning for AI agents, covering SAST, SCA, secrets detection, IaC, and DAST. Results are ranked by real risk, and the workflow is positioned around generating one SARIF report and a single verdict. Tools referenced include Trivy, Semgrep, and Gitleaks.

🛠️ Key Features

  • Security scanning for AI agents
  • SAST, SCA, secrets, IaC, and DAST coverage
  • Ranked by real risk
  • Produces one SARIF report and one verdict
  • Integrates Trivy, Semgrep, and Gitleaks

🚀 Use Cases

  • AppSec and DevSecOps security scanning
  • Vulnerability scanning across supply-chain security scenarios
  • CI-friendly code scanning and container-security checks

⚡ Developer Benefits

  • Unified output (one SARIF report, one verdict)
  • Supports tooling and reporting via security-focused formats (e.g., SARIF)
  • CLI and GitHub Actions alignment via automation workflows

⚠️ Limitations

  • Documentation excerpt only references the scanning/ranking approach and SARIF/verdict outputs; full configuration options are not provided here.

Topics

appsecclicode-scanningcontainer-securitydastdevsecopsgithub-actiongolangiac-securitysarifsastscasecrets-detectionsecuritysecurity-scanningsupply-chain-securityvulnerability-scannermcp-servertrivy

Related servers

More in Security