MCP Safety Warden runs on your own machine — the client starts it, so there is no endpoint to ping. 1 001 installs a week from pypi. Last commit 12 Aug 2026.
MCP proxy adding security scanning, behavioral profiling, risk gating, and safe tool call execution.
We read the source, 21 h ago · rules 3dff92dd89df
What this server is able to do. For an MCP server this is often the job itself — a terminal server runs commands because that is what it is for. Listed so you know what you are plugging in, not as an accusation.
result = subprocess.run(
r"|[/\\]\.npmrc(\b|$)"
Found in continuous integration, deployment or infrastructure files, or in a neighbouring package of the same monorepo. None of this is installed when you add the server: it describes how the project is built and released. We list it because a leaked key in a build pipeline is still a real problem, but it is not something this server does on your machine.
- name: Delete old tags
env:
DOCKERHUB_USERNAME: ${{ secrets.DOCKERHUB_USERNAME }}
Is this your server and something here is wrong? Tell us — corrections are free and do not require a plan.
We found places where it runs commands, builds paths or queries from values it is given. None of that is a flaw by itself — it becomes one when the code changes, and code changes quietly between releases. We re-read it on every one.
This server runs on your own machine — install it with the package manager and the client starts it for you. Package name taken from the official registry entry.
claude mcp add mcpsafetywarden -- uvx mcpsafetywarden
{
"mcpServers": {
"mcpsafetywarden": {
"args": [
"mcpsafetywarden"
],
"command": "uvx"
}
}
}
[mcp_servers.mcpsafetywarden]
command = "uvx"
args = ["mcpsafetywarden"]
{
"mcpServers": {
"mcpsafetywarden": {
"args": [
"mcpsafetywarden"
],
"command": "uvx"
}
}
}
{
"mcpServers": {
"mcpsafetywarden": {
"args": [
"mcpsafetywarden"
],
"command": "uvx"
}
}
}
AI-driven penetration testing - 22 security tools behind safety-hardened MCP endpoints
AI agent security: 7 MCP tools for injection detection, PII scanning, command safety, DLP.
Local-first MCP proxy with BM25 tool discovery, security scanning, quarantine & ~99% token savings
Scans MCP servers for tool poisoning, prompt injection and supply chain risks.
Security gateway for MCP agents: blocks prompt-injection-driven tool calls before they execute.
Security scanner for MCP servers - detects tool poisoning and injection
Real-time semantic security for AI coding agents and MCP tools
Security firewall for AI agents — scans MCP calls for injection, secrets, and risks.
Answers built from our own checks of this server.