Inkog runs on your own machine — the client starts it, so there is no endpoint to ping. 228 installs a week from npm. Last commit 16 Sep 2026.
Security co-pilot for AI agents. Scan for vulnerabilities, audit MCP servers, verify governance.
Today is the operative word: we check Inkog every 15 minutes and re-read its code on every release. Watch it and you find out the day that stops being true.
This server runs on your own machine — install it with the package manager and the client starts it for you. Package name taken from the official registry entry.
claude mcp add inkog -- npx -y @inkog-io/mcp
{
"mcpServers": {
"inkog": {
"args": [
"-y",
"@inkog-io/mcp"
],
"command": "npx"
}
}
}
[mcp_servers.inkog]
command = "npx"
args = ["-y", "@inkog-io/mcp"]
{
"mcpServers": {
"inkog": {
"args": [
"-y",
"@inkog-io/mcp"
],
"command": "npx"
}
}
}
{
"mcpServers": {
"inkog": {
"args": [
"-y",
"@inkog-io/mcp"
],
"command": "npx"
}
}
}
This one needs environment variables set before it will start:
INKOG_API_KEY (Your Inkog API key from https://app.inkog.io (free tier available)).
The author declared them in the registry entry; get the values from the project itself.
Runtime proxy for MCP security, cost governance & audit
Security scanner for MCP servers and skill files. Detects AVE vulnerabilities before production.
Security scanner for MCP servers and skill files. Detects AVE vulnerabilities before production.
BridgeGuard MCP Server - Cross-chain bridge security audit tools for AI coding agents. Scan bri...
Scan installed MCP servers for security vulnerabilities with 16 detection engines.
Security scanner for AI agent skills and MCP servers
Code security scanner for AI agents. 45+ vulnerability patterns, AST analysis, Solana micropayments.
FinishKit MCP: scan GitHub repos for security vulnerabilities, deployment blockers, and quality
Answers built from our own checks of this server.