io.github.andysalvo/supership-scan is an MCP server that predeploy security scanner. 80+ patterns. Runs locally. Optional x402 attestation. Its tool list has not been published yet over stdio and sse, requires no API key, and scores 48/100 on MCPpedia's security, maintenance and efficiency rubric.
Config is the same across clients — only the file and path differ.
{
"mcpServers": {
"supership": {
"args": [
"-y",
"-p",
"supership-scan",
"supership-mcp"
],
"command": "npx"
}
}
}Are you the author?
Add this badge to your README to show your security score and help users find safe servers.
Predeploy security scanner for the agent economy. Built by Crest Deployment Systems.
Run this in your terminal to verify the server starts. Then let us know if it worked — your result helps other developers.
npx -y 'supership-scan' 2>&1 | head -1 && echo "✓ Server started successfully"
After testing, let us know if it worked:
Five weighted categories — click any category to see the underlying evidence.
Malicious code in supership-scan (npm)
--- _-= Per source details. Do not edit below this line.=-_ ## Source: amazon-inspector (0aebde5ba55a72b6d4c6917ccf22db1427d434fed04cecc22dd16844e2d39033) The package advertises itself as a local-only static analyzer (README: "Runs locally. Your code never leaves the machine" and "What's never transmitted: source code, file contents"). The actual implementation in src/cli.mjs and src/server.mjs walks the target directory, reads file contents — explicitly including any file whose name starts wi
Be the first to review
Have you used this server?
Share your experience — it helps other developers decide.
Sign in to write a review.
Others in devops / security
MCP server for using the GitLab API
Regression testing for MCP servers. Checks capabilities, invokes tools, detects schema drift.
MCP server for Komodo - manage Docker containers, servers, stacks, and deployments via AI
💫 Tachyon MCP Runtime for Java and Kotlin - Model Context Protocol (MCP) server with Streamable HTTP, native Netty transports, tools, tasks, resources, prompts, completions, resumable sessions, and stateless deployment support.
MCP Security Weekly
Get CVE alerts and security updates for io.github.andysalvo/supership-scan and similar servers.
Start a conversation
Ask a question, share a tip, or report an issue.
Sign in to join the discussion.