mcp-audit

alih552/mcp-audit
★ 0 stars Python Security Updated today
Find security holes and token bloat in your MCP servers. Zero dependencies.
View on GitHub → Try with Claude — $10 free →

Quick Install

Copy the config for your editor. Some servers may need additional setup — check the README.

Add to claude_desktop_config.json:

{
  "mcpServers": {
    "mcp-audit": {
      "command": "uvx",
      "args": [
        "mcp-audit"
      ]
    }
  }
}

Or install with pip: pip install mcp-audit

README Excerpt

**Find security holes and token bloat in your MCP servers — in one command, zero dependencies.** The MCP ecosystem exploded in 2026, and most of it is dangerously misconfigured. A 2026 analysis of ~7,000 public MCP servers found **41% require no authentication at all**, **36.7% are SSRF-vulnerable**,

Topics

aiclaudeclideveloper-toolsllmmcpmodel-context-protocolsecurity