mcp-security-audit
26
The Security Audit Tool is a Model Context Protocol (MCP) Server that performs security vulnerability scans on npm package dependencies. It offers real-time integration with remote npm registries and provides comprehensive reports on found vulnerabilities, supporting multiple package managers with automated fix recommendations.
What package managers are supported by the MCP Security Audit Tool?
The tool is compatible with npm, pnpm, and yarn package managers.
How does the tool provide fix recommendations?
The tool analyzes vulnerabilities and suggests upgrades or patches to mitigate the identified issues.
What is the purpose of CVSS scoring in the vulnerability reports?
CVSS scoring provides a standardized way to assess the severity of vulnerabilities, helping prioritize remediation efforts.