MCP-Defender

mcp
Security Audit
Fail
Health Pass
  • License — License: AGPL-3.0
  • Description — Repository has a description
  • Active repo — Last push 204 days ago
  • Community trust — 251 GitHub stars
Code Fail
  • process.env — Environment variable access in forge.config.ts
  • rm -rf — Recursive force deletion command in package.json
  • network request — Outbound network request in package.json
Permissions Pass
  • Permissions — No dangerous permissions requested

No AI report is available for this listing yet.

SUMMARY

Desktop app that automatically scans and blocks malicious MCP traffic in AI apps like Cursor, Claude, VS Code and Windsurf.

README.md

Shows a black knight in light color mode and a white knight one in dark color mode.

MCP Defender

Automatically protects MCP traffic in AI apps

GitHub stars GitHub License

MCP Defender has been acquired by Docker Inc.

🛡️ MCP Defender is a desktop app that protects AI apps like Cursor from a variety of attacks.

🚦 All MCP tool call requests and responses from AI apps are automatically proxied through MCP Defender.

🔎 The intercepted data is then checked against a set of signatures.

🔐 If anything harmful is detected, MCP Defender alerts you and asks if you want to allow or block the tool call.

Demos

https://github.com/user-attachments/assets/363ae2b1-e395-4cdc-b5ca-e9862baf89c3

Quick Start

Download MCP Defender for Mac

Alternatively you can clone the git repo, and run it as follows:

# Install dependencies
npm install

# Start app
npm start

Which apps are automatically protected?

MCP Defender protects Cursor, Claude, Visual Studio Code and Windsurf.

License

MCP Defender is licensed under the AGPL-3.0 license. For more details, see the LICENSE.

Reviews (0)

No results found