Agent♥︎Age
Catalog

io.github.mlawsonking/code-guard-mcp

Official

by mlawsonking · JavaScript

Security scan for AI-generated code: injection, SSRF, secrets, weak crypto, unsafe deserialization.

code-guard-mcp (MCP Server)

The io.github.mlawsonking/code-guard-mcp MCP server performs security scanning of AI-generated code. It is designed for a coding agent to call it on the code or a diff just produced before committing or running it. The server focuses on common issues such as injection, SSRF, secrets, weak crypto, and unsafe deserialization.

🛠️ Key Features

  • Scans code for security bugs: injection, SSRF, hardcoded secrets, weak crypto, unsafe deserialization
  • Rule-based scanning with no LLM
  • Single-call coverage for common cases

🚀 Use Cases

  • Validate code or diffs produced by an AI coding agent
  • Run as a pre-commit or pre-run security check
  • Perform a fast first pass before a full review

⚡ Developer Benefits

  • Integrates with MCP client configurations (e.g., Claude Desktop, Cursor, Claude Code)
  • Free and operates without LLM dependencies
  • Helps catch typical agent-security and supply-chain-security problems early

⚠️ Limitations

  • “Fast first pass” only; not a substitute for a real security review

Topics

agent-securityagent-security-toolsai-agentsapimcpmcp-serverprompt-injectionsupply-chain-security

Related servers

More in Security