{"adoption": {"forks": 132, "observed_at": "2026-08-28T04:03:23.082165+00:00", "stars": 1051}, "canonical_url": "https://ross.abutalabs.com/products/mcp-scanner", "card": {"archived": false, "artifact_type": "cli-tool", "description": "Scan MCP servers for potential threats & security findings.", "domain": ["security", "developer-tools", "large-language-models"], "enriched": true, "function": ["security", "vulnerability-scanning", "mcp", "cli", "developer-tools"], "health_score": 100, "homepage": "https://blogs.cisco.com/ai/securing-the-ai-agent-supply-chain-with-ciscos-open-source-mcp-scanner", "language": "Python", "license": "Apache-2.0", "license_family": "permissive", "maturity": "active", "member_repos": ["cisco-ai-defense/mcp-scanner"], "name": "cisco-ai-defense/mcp-scanner", "platform": ["python", "cli", "cross-platform"], "pushed_at": "2026-08-25T22:43:39+00:00", "repo": "cisco-ai-defense/mcp-scanner", "stars": 1051, "tags": ["mcp-security", "supply-chain-security", "yara-rules", "llm-analysis", "ai-agent-supply-chain", "pypi-package-scanning", "virus-total", "ai-agents", "docker"], "topics": ["agents", "ai", "mcp", "security"], "urls": [], "use_cases": ["scan mcp servers for malicious tools before connecting agents", "audit ai agent supply chain for security threats", "detect tool poisoning in model context protocol servers", "scan pypi packages used by mcp servers for malware", "run mcp security scans in ci/cd pipelines", "check mcp server code for behavioral threats"], "what_it_is": "MCP Scanner is a Python tool and SDK from Cisco AI Defense that scans Model Context Protocol (MCP) servers, tools, prompts, and resources for security threats. It combines YARA rules, LLM-based analysis, and the Cisco AI Defense inspect API, and can run as a CLI or REST API server.", "when_to_avoid": ["you need general-purpose vulnerability scanning of non-MCP software", "you require a fully self-contained scanner with no reliance on external APIs like Cisco AI Defense or VirusTotal", "you need runtime protection of agents rather than pre-deployment scanning"], "when_to_choose": ["you deploy or consume MCP servers and need to vet them for security findings", "you want multi-engine scanning (YARA, LLM, Cisco AI Defense) of MCP tools, prompts, and resources", "you need offline/static scanning of MCP server metadata for air-gapped or CI environments"]}, "data_as_of": "2026-08-30T08:39:29.467469+00:00", "members": [{"path": "/products/mcp-scanner", "repo": "cisco-ai-defense/mcp-scanner", "role": "main", "score": 83}], "provenance": {"archived": {"kind": "observed", "observed_at": "2026-08-28T04:03:23.082165+00:00", "source": "github"}, "artifact_type": {"confidence": null, "enriched_at": "2026-08-30T07:00:02.892015+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "277cb0e362eee0cce7af6d3ab394fd19cc54e25f6218577a9744b19cbedd9c6e", "fetched_at": "2026-08-28T04:03:23.082165+00:00", "kind": "readme", "missing": false, "url": "https://github.com/cisco-ai-defense/mcp-scanner"}, {"content_hash": "638466d2f4d7c61b4aaa289cadb0165e69bbe7d508277a0e393376e9c1b53c11", "fetched_at": "2026-08-29T13:01:47.739663+00:00", "kind": "homepage", "missing": false, "url": "https://blogs.cisco.com/ai/securing-the-ai-agent-supply-chain-with-ciscos-open-source-mcp-scanner"}], "taxonomy_version": 1}, "description": {"kind": "observed", "observed_at": "2026-08-28T04:03:23.082165+00:00", "source": "github"}, "domain": {"confidence": null, "enriched_at": "2026-08-30T07:00:02.892015+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "277cb0e362eee0cce7af6d3ab394fd19cc54e25f6218577a9744b19cbedd9c6e", "fetched_at": "2026-08-28T04:03:23.082165+00:00", "kind": "readme", "missing": false, "url": "https://github.com/cisco-ai-defense/mcp-scanner"}, {"content_hash": "638466d2f4d7c61b4aaa289cadb0165e69bbe7d508277a0e393376e9c1b53c11", "fetched_at": "2026-08-29T13:01:47.739663+00:00", "kind": "homepage", "missing": false, "url": "https://blogs.cisco.com/ai/securing-the-ai-agent-supply-chain-with-ciscos-open-source-mcp-scanner"}], "taxonomy_version": 1}, "enriched": {"inputs": [], "kind": "computed", "method": "enrichment_status"}, "function": {"confidence": null, "enriched_at": "2026-08-30T07:00:02.892015+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "277cb0e362eee0cce7af6d3ab394fd19cc54e25f6218577a9744b19cbedd9c6e", "fetched_at": "2026-08-28T04:03:23.082165+00:00", "kind": "readme", "missing": false, "url": "https://github.com/cisco-ai-defense/mcp-scanner"}, {"content_hash": "638466d2f4d7c61b4aaa289cadb0165e69bbe7d508277a0e393376e9c1b53c11", "fetched_at": "2026-08-29T13:01:47.739663+00:00", "kind": "homepage", "missing": false, "url": "https://blogs.cisco.com/ai/securing-the-ai-agent-supply-chain-with-ciscos-open-source-mcp-scanner"}], "taxonomy_version": 1}, "health_score": {"inputs": ["days_since_push", "days_since_release", "archived"], "kind": "computed", "method": "health_v1"}, "homepage": {"kind": "observed", "observed_at": "2026-08-28T04:03:23.082165+00:00", "source": "github"}, "language": {"kind": "observed", "observed_at": "2026-08-28T04:03:23.082165+00:00", "source": "github"}, "license": {"kind": "observed", "observed_at": "2026-08-28T04:03:23.082165+00:00", "source": "github"}, "license_family": {"inputs": ["license"], "kind": "computed", "method": "license_family"}, "maturity": {"confidence": null, "enriched_at": "2026-08-30T07:00:02.892015+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "277cb0e362eee0cce7af6d3ab394fd19cc54e25f6218577a9744b19cbedd9c6e", "fetched_at": "2026-08-28T04:03:23.082165+00:00", "kind": "readme", "missing": false, "url": "https://github.com/cisco-ai-defense/mcp-scanner"}, {"content_hash": "638466d2f4d7c61b4aaa289cadb0165e69bbe7d508277a0e393376e9c1b53c11", "fetched_at": "2026-08-29T13:01:47.739663+00:00", "kind": "homepage", "missing": false, "url": "https://blogs.cisco.com/ai/securing-the-ai-agent-supply-chain-with-ciscos-open-source-mcp-scanner"}], "taxonomy_version": 1}, "member_repos": {"kind": "observed", "observed_at": "2026-08-28T04:03:23.082165+00:00", "source": "github"}, "name": {"kind": "observed", "observed_at": "2026-08-28T04:03:23.082165+00:00", "source": "github"}, "platform": {"confidence": null, "enriched_at": "2026-08-30T07:00:02.892015+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "277cb0e362eee0cce7af6d3ab394fd19cc54e25f6218577a9744b19cbedd9c6e", "fetched_at": "2026-08-28T04:03:23.082165+00:00", "kind": "readme", "missing": false, "url": "https://github.com/cisco-ai-defense/mcp-scanner"}, {"content_hash": "638466d2f4d7c61b4aaa289cadb0165e69bbe7d508277a0e393376e9c1b53c11", "fetched_at": "2026-08-29T13:01:47.739663+00:00", "kind": "homepage", "missing": false, "url": "https://blogs.cisco.com/ai/securing-the-ai-agent-supply-chain-with-ciscos-open-source-mcp-scanner"}], "taxonomy_version": 1}, "pushed_at": {"kind": "observed", "observed_at": "2026-08-28T04:03:23.082165+00:00", "source": "github"}, "repo": {"kind": "observed", "observed_at": "2026-08-28T04:03:23.082165+00:00", "source": "github"}, "stars": {"kind": "observed", "observed_at": "2026-08-28T04:03:23.082165+00:00", "source": "github"}, "tags": {"confidence": null, "enriched_at": "2026-08-30T07:00:02.892015+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "277cb0e362eee0cce7af6d3ab394fd19cc54e25f6218577a9744b19cbedd9c6e", "fetched_at": "2026-08-28T04:03:23.082165+00:00", "kind": "readme", "missing": false, "url": "https://github.com/cisco-ai-defense/mcp-scanner"}, {"content_hash": "638466d2f4d7c61b4aaa289cadb0165e69bbe7d508277a0e393376e9c1b53c11", "fetched_at": "2026-08-29T13:01:47.739663+00:00", "kind": "homepage", "missing": false, "url": "https://blogs.cisco.com/ai/securing-the-ai-agent-supply-chain-with-ciscos-open-source-mcp-scanner"}], "taxonomy_version": 1}, "topics": {"kind": "observed", "observed_at": "2026-08-28T04:03:23.082165+00:00", "source": "github"}, "urls": {"kind": "observed", "observed_at": "2026-08-28T04:03:23.082165+00:00", "source": "github"}, "use_cases": {"confidence": null, "enriched_at": "2026-08-30T07:00:02.892015+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "277cb0e362eee0cce7af6d3ab394fd19cc54e25f6218577a9744b19cbedd9c6e", "fetched_at": "2026-08-28T04:03:23.082165+00:00", "kind": "readme", "missing": false, "url": "https://github.com/cisco-ai-defense/mcp-scanner"}, {"content_hash": "638466d2f4d7c61b4aaa289cadb0165e69bbe7d508277a0e393376e9c1b53c11", "fetched_at": "2026-08-29T13:01:47.739663+00:00", "kind": "homepage", "missing": false, "url": "https://blogs.cisco.com/ai/securing-the-ai-agent-supply-chain-with-ciscos-open-source-mcp-scanner"}], "taxonomy_version": 1}, "what_it_is": {"confidence": null, "enriched_at": "2026-08-30T07:00:02.892015+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "277cb0e362eee0cce7af6d3ab394fd19cc54e25f6218577a9744b19cbedd9c6e", "fetched_at": "2026-08-28T04:03:23.082165+00:00", "kind": "readme", "missing": false, "url": "https://github.com/cisco-ai-defense/mcp-scanner"}, {"content_hash": "638466d2f4d7c61b4aaa289cadb0165e69bbe7d508277a0e393376e9c1b53c11", "fetched_at": "2026-08-29T13:01:47.739663+00:00", "kind": "homepage", "missing": false, "url": "https://blogs.cisco.com/ai/securing-the-ai-agent-supply-chain-with-ciscos-open-source-mcp-scanner"}], "taxonomy_version": 1}, "when_to_avoid": {"confidence": null, "enriched_at": "2026-08-30T07:00:02.892015+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "277cb0e362eee0cce7af6d3ab394fd19cc54e25f6218577a9744b19cbedd9c6e", "fetched_at": "2026-08-28T04:03:23.082165+00:00", "kind": "readme", "missing": false, "url": "https://github.com/cisco-ai-defense/mcp-scanner"}, {"content_hash": "638466d2f4d7c61b4aaa289cadb0165e69bbe7d508277a0e393376e9c1b53c11", "fetched_at": "2026-08-29T13:01:47.739663+00:00", "kind": "homepage", "missing": false, "url": "https://blogs.cisco.com/ai/securing-the-ai-agent-supply-chain-with-ciscos-open-source-mcp-scanner"}], "taxonomy_version": 1}, "when_to_choose": {"confidence": null, "enriched_at": "2026-08-30T07:00:02.892015+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "277cb0e362eee0cce7af6d3ab394fd19cc54e25f6218577a9744b19cbedd9c6e", "fetched_at": "2026-08-28T04:03:23.082165+00:00", "kind": "readme", "missing": false, "url": "https://github.com/cisco-ai-defense/mcp-scanner"}, {"content_hash": "638466d2f4d7c61b4aaa289cadb0165e69bbe7d508277a0e393376e9c1b53c11", "fetched_at": "2026-08-29T13:01:47.739663+00:00", "kind": "homepage", "missing": false, "url": "https://blogs.cisco.com/ai/securing-the-ai-agent-supply-chain-with-ciscos-open-source-mcp-scanner"}], "taxonomy_version": 1}}, "score": {"components": {"activity": 99, "longevity": 24, "rhythm": 96}, "computed_at": "2026-09-03T02:20:16.233290+00:00", "flags": [], "formula": "round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)", "inputs": {"age_days": 344, "days_push": 8, "days_rel": 26, "gap_med": 2.0, "n_releases_24m": 45}, "score": 83, "version": 2}, "staleness": {"enrichment_outdated": false, "low_confidence": false, "scrape_days": 9, "stale_scrape": false}}