Skip to content
mcp/skillhub

XploitScan MCP Server

io.github.bgage72590/xploitscan-mcpv1.7.0

Security scanner for AI-generated code. 30 free rules; all 223 with a paid-plan API key.

Node.jsstdioofficial registry

context tax

queued

security

queued

cold start

queued

freshness

Active6d ago

Install XploitScan MCP server

Install in Claude Code

claude mcp add xploitscan -e XPLOITSCAN_API_KEY='<xploitscan-api-key>' -- npx -y xploitscan-mcp

Configuration

VariableRequiredSecretDescription
XPLOITSCAN_API_KEY—yesOptional. An xpls_ API key from a paid-plan account. Without it, the 30 free rules run; with it, all 223.

Freshness

Active — last maintenance signal 6d ago. The newest of the signals below sets the band.

  1. Last commit (default branch)

    no data · GitHub

  2. Latest release

    no data · GitHub

  3. Package published

    no data · npm/PyPI

  4. Registry entry updated

    2026-10-04 · 6d ago · official registry · v1.7.0

FAQ

›How do I install the XploitScan MCP server in Claude Code?

Run: claude mcp add xploitscan -e XPLOITSCAN_API_KEY='<xploitscan-api-key>' -- npx -y xploitscan-mcp. For Cursor, VS Code, Claude Desktop and Windsurf, use the install tabs above.

›Does XploitScan require an API key?

Yes. It expects XPLOITSCAN_API_KEY, of which 1 is a secret.

›Can I use XploitScan as a remote (hosted) MCP server?

No hosted endpoint is published; it runs locally over stdio.

›Is XploitScan in the official MCP registry?

Yes, as io.github.bgage72590/xploitscan-mcp.

Alternatives to XploitScan

Other security MCP servers.

View all