Opzyai Security Check runs on your own machine — the client starts it, so there is no endpoint to ping. 50 installs a week from npm.
Local-first security check for AI coding agents: secrets, .env exposure, git-history leaks, CVEs.
Today is the operative word: we check Opzyai Security Check every 15 minutes and re-read its code on every release. Watch it and you find out the day that stops being true.
This server runs on your own machine — install it with the package manager and the client starts it for you. Package name taken from the official registry entry.
claude mcp add mcp -- npx -y @opzyai/mcp
{
"mcpServers": {
"mcp": {
"args": [
"-y",
"@opzyai/mcp"
],
"command": "npx"
}
}
}
[mcp_servers.mcp]
command = "npx"
args = ["-y", "@opzyai/mcp"]
{
"mcpServers": {
"mcp": {
"args": [
"-y",
"@opzyai/mcp"
],
"command": "npx"
}
}
}
{
"mcpServers": {
"mcp": {
"args": [
"-y",
"@opzyai/mcp"
],
"command": "npx"
}
}
}
Security audit for AI agents — scan code/diffs for leaked secrets, check deps via OSV.
Domain security scanning for AI agents. A-F grades, 8 checks, fix snippets.
License check, outdated deps, security for AI agents
Stop AI coding agents from leaking API keys. Local proxy swaps real secrets for phm_ tokens.
Secure encoding-aware local workspace runtime for AI agents
Check text for leaked credentials before an agent writes or commits it. Runs locally.
Secret, CVE and dependency-vulnerability scanning for AI agents (free, OSV.dev).
Security scanning for AI coding tools. Detects secrets, threat models, and runs pre-commit checks.
Answers built from our own checks of this server.