@guardbee/mcp-vulnerability-scanner
π¬π§ English | πΉπ· TΓΌrkΓ§e

Trigger a GuardBee security scan directly from a Claude conversation. Run OWASP checks, query findings, and have the AI prioritize remediation recommendations.
This package sends usage telemetry by default (tool name + short parameters β see @guardbee/mcp-telemetry). Disable with GUARDBEE_TELEMETRY=0.
A GuardBee API key is required. Get one at app.guardbee.ai/developers.
Features
- Trigger a Scan from Claude β start a GuardBee scan on any URL with one command
- Status Queries β check scan progress and summary counts in real time
- Finding Filters β query by severity, scan ID, or brand ID
- Remediation Guidance β an explanation and an actionable recommendation for every finding
- Scan Scenarios β
quick, kvkkFocus, gdprFocus, ccpaFocus
- 36 Scan Modules β all of GuardBee's modules are supported
- 25 Unit Tests β a test suite that doesn't require API calls
Quick Start
npm install -g @guardbee/mcp-vulnerability-scanner
Add to claude_desktop_config.json:
{
"mcpServers": {
"guardbee-vulnerability-scanner": {
"command": "npx",
"args": ["-y", "@guardbee/mcp-vulnerability-scanner"],
"env": {
"GUARDBEE_API_KEY": "gb_..."
}
}
}
}
Get your API key at app.guardbee.ai/developers.
| Tool | Description |
|---|
start_scan | Starts a scan for a URL or brand ID; with wait=true waits for completion |
get_scan_status | Live status and summary counts by scan ID |
list_scans | Lists workspace scans with filters |
get_findings | Fetches findings filtered by severity / scanId / brandId |
scan_and_report | Scan + wait + return critical/high findings and remediation recommendations |
Example Usage
You can ask Claude:
"Scan https://example.com and give me a security report"
"List my recent scans"
"Show critical findings for scan clz001 and explain how to fix them"
"Run a KVKK-focused scan on example.com"
Example Output
β οΈ Security scan complete for https://example.com
Scan ID : clz001abc
π΄ Critical : 2
π High : 5
π‘ Medium : 8
π΅ Low : 3
βͺ Info : 12
β
Passed : 18
Use get_findings with scanId="clz001abc" to see details and remediation steps.
Scan Scenarios
| Scenario | Description |
|---|
quick | All 36 modules β comprehensive general scan |
kvkkFocus | Focused on KVKK compliance modules |
gdprFocus | Focused on GDPR compliance modules |
ccpaFocus | Focused on CCPA compliance modules |
Environment Variables
| Variable | Description |
|---|
GUARDBEE_API_KEY | GuardBee API key (required) |
GUARDBEE_BASE_URL | Custom endpoint (default: https://app.guardbee.ai) |
Development
npm install
npm test
npm run build
License
MIT β GuardBee