Overview
Features
Docker Deployment
Secure containerized deployment with HTTP streaming (no SSE required).
Optional Authentication
Supports Google OAuth 2.0 for secure access control (disabled by default).
Comprehensive Coverage
Queries 5+ vulnerability databases (OSV.dev, NVD, GitHub Advisory, CIRCL, Safety DB).
GitHub Integration
Scan any public/private GitHub repository directly (up to 1GB).
AI-Powered Analysis
Uses OpenAI/Anthropic APIs for intelligent security assessment.
Secrets Detection
Finds exposed API keys, passwords, and credentials.
Docker Security
Analyzes Dockerfiles for vulnerable Python dependencies.
Smart Caching
Commit-level caching to avoid redundant scans.
Who Is This For?
- Security teams:Scan Python projects and GitHub repositories for vulnerabilities via MCP HTTP transport.
- Developers:Integrate vulnerability scans into workflows and Claude Code via MCP HTTP transport.
- DevOps:Monitor container and dependency security for CI/CD pipelines using MCP.




