# va-pentest-mcp

> Use this tool when you need to automate security vulnerability assessments and identify potential threats in your codebase. It solves problems related to dependency scanning and custom code vulnerability detection, providing detailed reports in HTML and JSON formats. The va-pentest-mcp tool takes in code dependencies and custom code as inputs, generating comprehensive security reports as output.

Canonical page: https://skillsregistry.net/skills/banhongit7-va-pentest-mcp  
JSON: https://api.skillsregistry.net/v1/skills/banhongit7-va-pentest-mcp

## Description

A Model Context Protocol server for automated security vulnerability assessment, combining OWASP Dependency-Check dependency scanning with custom code vulnerability detection, and generating detailed HTML and JSON reports.

## Trust

- **Trust score (0–1):** 0.66
- **Verification tier:** scanned
- **Last scanned:** 2026-08-30

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** security
- **Updated:** 2026-08-30

## Source

- **Source listing:** [Glama](https://glama.ai/mcp/servers/v1l2ov0ve0)
- **Repository:** <https://github.com/banhongit7/va-pentest-mcp>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "banhongit7-va-pentest-mcp"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/banhongit7-va-pentest-mcp` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/banhongit7-va-pentest-mcp/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
