mcp-audit

(β˜… 154)

See what your AI agents can access. Scan MCP configs for exposed secrets, shadow APIs, and AI models. Generate AI-BOMs for compliance.

  • .gitignore
  • .nojekyll
  • action.yml
  • app.js
  • BUG_TRACKER.md
  • CHANGELOG.md
  • CHECKSUMS.txt
  • CONTRIBUTING.md
  • demo-data.json
  • deploy.sh
  • Dockerfile
  • getting-started.html
  • google-apps-script.js
  • index.html
  • LICENSE
  • mcp-audit-cli.zip
  • PR-FAQ.md
  • pyproject.toml
  • README.md
  • RELEASE_NOTES.md
  • RELEASE_v1.0.0.md
  • screenshot.png
  • Screenshot2.png
  • SECURITY-ADVISORY-2025-001.md
  • SECURITY.md
  • styles.css

# Installation Guide

1. Get the code
git clone https://github.com/apisec-inc/mcp-audit

Downloads the entire project code from GitHub to your computer.

cd mcp-audit

Moves into the project folder you just downloaded.

2. Docker

Easy Recommended
Prerequisites
  • Git Needed to download the project code from GitHub.
  • Docker Desktop Needed to build and run containers. Install it and keep it running in the background.
docker build -t mcp-audit .

Builds a runnable image based on the Dockerfile.

docker run -v $(pwd):/scan mcp-audit scan

Runs the built image as an actual container.

docker run -v $(pwd):/scan mcp-audit scan --format json -o /scan/report.json

Runs the built image as an actual container.

βœ… Run docker compose ps to check the containers are Up. If the README mentions a port, open http://localhost:PORT in your browser.

Pulled directly from this repo's README.

3. Node.js

Easy
Prerequisites
  • Git Needed to download the project code from GitHub.
  • Node.js Node.js must be installed to use npm. The LTS version is recommended.
cd backend

This project's files live in a subfolder, so move into it first.

npm install

Downloads and installs the libraries listed in package.json.

npm start

Starts the development/run server.

βœ… After running the command, open the address shown in the terminal (usually something like http://localhost:3000) in your browser.

4. Python

Easy
Prerequisites
  • Git Needed to download the project code from GitHub.
  • Python 3 On Windows, be sure to check 'Add Python to PATH' during installation.
pip install -e .

Installs the Python libraries listed in requirements.txt (or similar).

run: pip install mcp-audit

Installs the Python libraries listed in requirements.txt (or similar).

- run: pip install mcp-audit

Installs the Python libraries listed in requirements.txt (or similar).

βœ… If it runs without errors and prints output in the terminal, it worked.

Pulled directly from this repo's README.

// repository documentation