MCPSec Audit
Version updated for https://github.com/pfrederiksen/mcpsec to version v1.1.1.
- This action is used across all versions by 0 repositories.
Action Type
This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary
Summary:
MCPSec is an OWASP MCP Top 10 security scanner designed to audit Model Context Protocol (MCP) server configurations. It checks for security risks, outputs findings in OCSF JSON or human-readable tables, and supports a pluggable YAML rules engine for community-contributed detections. The action can be used for developer laptop audits, CI/CD gate controls, security team posture assessments, Claude Desktop Extension reviews, and compliance evidence generation.
What’s Changed
Changelog
- 178784acedf195c87b621bd29493b1814f188732 fix: avoid shadowed scanner variables
- 45b39c18854bc85f355d5ffbb6fa67fe5f8a59d1 fix: handle rule engine conversion errors