{"categories":[{"label":"Security","url":"https://skillfed.io/packages/category/security/2"}],"enrichment":{"capability":"Scans MCP (Model Context Protocol) servers and tools for security threats using YARA rules, LLM analysis, and Cisco AI Defense API, with support for CLI and REST API modes.","skillfed_tags":["mcp-protocol","threat-detection","code-analysis"],"use_cases":["Scan MCP tools before deploying them to production to detect malicious code or unsafe patterns.","Integrate into CI/CD pipelines to automatically check MCP server definitions and dependencies for vulnerabilities.","Analyze source code of MCP servers for behavioral threats and production-readiness issues like missing error handling.","Scan binary files bundled with MCP servers against VirusTotal to detect known malware signatures.","Run offline security checks on pre-generated JSON MCP definitions in air-gapped environments."],"what_it_does":"Cisco AI MCP Scanner is a security analysis tool for MCP (Model Context Protocol) servers and tools that combines three independent scanning engines: YARA pattern matching, LLM-as-judge behavioral analysis, and Cisco AI Defense API inspection. It detects malicious or unsafe MCP tools, scans Python dependencies for known vulnerabilities using pip-audit, analyzes source code for behavioral threats, and can scan binary files against VirusTotal's malware database. The tool runs as a standalone CLI, a REST API server via fastapi and uvicorn, or as an importable Python module, supporting multiple authentication methods including OAuth and explicit API key configuration.\n\nThe package depends on 22 runtime libraries including fastapi, uvicorn for server mode, tree-sitter language parsers for code analysis, litellm for LLM abstraction, and yara-python for pattern detection. It supports Python 3.11, 3.12, and 3.13, with low installation friction as a pure Python wheel. Configuration is environment-variable driven, allowing fine-grained control over which analyzers run and which external services are enabled.","worth_installing":"Yes, with conditions. Install if you need to scan MCP servers and tools for security threats and have access to at least one external API (Cisco AI Defense, an LLM provider, or VirusTotal). The package is actively maintained, has low install friction, and supports multiple independent scanning engines. However, verify the license terms first\u2014the license treatment is unclear in the metadata\u2014and note that most scanning modes require external API keys."},"id":"cisco-ai-mcp-scanner","links":{"html":"https://skillfed.io/packages/cisco-ai-mcp-scanner","md":"https://skillfed.io/packages/cisco-ai-mcp-scanner.md","pypi":"https://pypi.org/project/cisco-ai-mcp-scanner/"},"maintenance":{"status":"active"},"meta":{"latest_release":"2026-08-07","license_spdx":null,"license_treatment":"unclear","name":"cisco-ai-mcp-scanner","python_support":"supports_current","summary":"A tool to scan MCP servers and tools for security findings"},"popularity":{"monthly_downloads":142238,"position":11221,"tier":"top_15000"},"security":{"n_vulnerabilities":0},"version":"4.8.3"}
