general MCP Server
Static Code Analysis for security teams with Inter file taint analysis. Built for finding vulnerabilities, advanced structural search, derive insights and supports MCP
Discovered via github-seeds and last synced 3mo ago.
Install instructions not detected yet
Check the source repository for the latest setup steps.
GitHub token (required when `pr-comment` or `pr-inline` is enabled)
Path to source code
Root user, exposed secrets, image pinning, multi-stage builds, layer optimization
Output file path
Python version to use
Privileged mode, socket exposure, capability escalation, network isolation
Description
Path to local Python rule files or directory
Enable debug diagnostics with timestamps
Remote ruleset(s), comma-separated (e.g., `python/all`, `docker/security`)
Skip test files
Output format: `sarif`, `json`, or `csv`
Disable anonymous usage metrics
Analysis
Force refresh cached rulesets
Disable diff-aware scanning (scan all files)
Fail on severities (e.g., `critical,high`)
Post inline review comments for critical/high findings
Enable verbose output
SQL injection, RCE, SSRF, path traversal, XSS, deserialization, crypto misuse, JWT vulnerabilities
Post summary comment on pull request