Code & Scripts

MCP Security Audit Tool for Local Agent Stacks

A CLI scanner that reads local MCP server configs and emits a Markdown + JSON audit report covering tool surface area, auth methods, and blast radius.

$ tar -tzf mcp-security-audit-tool-for-local-agent-stacks.tar.gz
  • mcpaudit/cli.py — CLI entry point (mcpaudit scan) with output flags and CI-ready exit codes
  • mcpaudit/discovery.py — Auto-finds MCP configs across all supported client locations
  • mcpaudit/rules.py — 12 static analysis rules covering auth, scope, transport, and blast radius
  • mcpaudit/report.py — Renders Markdown and JSON audit reports from findings
  • mcpaudit/templates/report.md.j2 — Jinja2 report template (customizable)
  • sample-report.md / sample-report.json — Pre-generated examples showing every severity level
  • tests/ — 58 passing unit tests with 4 fixture configs (minimal, risky, clean, worst-case)
  • README.md — Setup and usage guide; honest about what the tool does *not* cover
$29

one-time purchase

Instant download after purchase
📧Download link sent to your email
🔄7-day download access
14-day money-back guarantee
View refund policy

## goes-well-with

From the same shelf

## not-ready-to-buy

Take the field notes instead

One practical write-up a week from the same workbench these kits come from — plus reader pricing when new kits ship.