Is Security Scanner AI MCP server safe?
Probably. Read the findings first.
Use with care. Some checks failed or could not be verified.
Public scan report
scanner v0.1.9 · 2026-09-22 · same rubric, same numbers if you re-run it
1 medium
- Code scan14 source files scanned20/25
- –Live reliabilityno gateway calls yet and no remote to proben/a
- –Tool poisoningtools not inspected (local package is not executed); not countedn/a
- Auth qualitylocal package, no credentials required12/15
- Maintenancerepository not readable: repo not found3/15
- Maintainer identityno repository or website to verify2/10
Findings (1)
- mediumeval / new Function used
exec.evalsecurity_scanner_ai_mcp-1.0.12/server.py: …everity": "critical"} ) if "eval(" in code or "exec(" in code: fi…
Overall 57/100. Components that don't apply are left out of the denominator. Any critical finding is an F.RubricAppeal a findingJSON
Other servers that do what Security Scanner AI does
- CodeInspectusLocal-first MCP security scanner and CLI for AI-generated applications.not reviewedGrowingC
MCP Security & Vulnerability AuditorStatic AST security scanner detecting command injection, leaked secrets, and SSRF in MCP tools.not reviewedGrowingB
ScanLabsAI Security ScannerScan a website for vulnerabilities: OWASP Top 10, CVEs, SSL, headers - with plain-English fixesnot reviewedNewB