Mcp Audit Skill

security MCP Server

Claude-Skill für systematische MCP-Server-Audits gegen einen kuratierten Best-Practice-Standards-Korpus · 68 Checks · 8 Kategorien · OAuth 2.1, OWASP, Lethal Trifecta, Schweiz-Compliance (DSG/ISDS) · MIT

Verified
securitysecurity
3 views1 stars0 forksMIT

Why This Matters

Discovered via github-topic:mcp-server and last synced 2mo ago.

Verified
Source
github-topic:mcp-server
Stars
1
Last synced
2mo ago
Install
Check source

Install

Install instructions not detected yet

Check the source repository for the latest setup steps.

View source instructions
28
Tools
0
Resources
0
Prompts
Standard I/O
Transport

Available Tools (28)

ARCH

Tool-Design, Annotations, Idempotency, Repo-Struktur, Spec-Versionierung

high

Architektureller Mangel mit signifikantem Risiko

OBS

Logging, Errors, SIEM, OpenTelemetry

CH

DSG/EDÖB, ISDS Stadt Zürich, Volksschule

Code

Bereich

critical

Sicherheitslücke / Compliance-Bruch

SCALE

Transport, Load Balancing, Container, Gateway

Stufe

Bedeutung

SDK

FastMCP, TypeScript, Zod, Lifecycle

medium

Best-Practice-Verletzung

HITL

Sampling, Human-in-the-Loop

SEC

Security (grösste Kategorie)

low

Polish, Optimierung

Tool

Kategorie

Quelle

Inhalt

5

1 critical · 4 high · —

3

— · 2 high · 1 medium

Anzahl

Severity-Profil

23

14 critical · 8 high · 1 medium

Prinzip

Bedeutung

OPS

Test-Strategie, Doku-Standard, Phasenarchitektur

Betriebssystem

Voraussetzung

12

1 critical · 7 high · 4 medium

6

1 critical · 1 high · 4 medium

8

3 critical · 4 high · 1 medium

Code-Scanner

Lokale MCP-Configs (Secrets, Shadow-APIs, AI-BOM, SARIF)

Tutorial-Tool

Lehrt CWE/AIVSS-Methodik anhand von Beispiel-Servern

Dependency-Scanner

npm-Vulnerability-Scan für MCP-Pakete