# MCP Tool Security Inspector

> MCP Tool Security Inspector — danveil-mcp-security-inspector. Use this tool when you need to analyze MCP tool metadata for potential security threats without executing the tools themselves. It detects misleading instructions, concealed capabilities, and schema drift through explainable and deterministic static analysis. Ideal for ensuring tool integrity and reliability in various operational contexts.

Canonical page: https://skillsregistry.net/skills/danveil-mcp-security-inspector  
JSON: https://api.skillsregistry.net/v1/skills/danveil-mcp-security-inspector

## Description

Performs explainable, deterministic static analysis of MCP tool metadata to detect misleading instructions, concealed capabilities, and schema drift without executing tools.

## Trust

- **Trust score (0–1):** 0.63
- **Verification tier:** scanned
- **Last scanned:** 2026-09-04

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** security
- **Updated:** 2026-09-04

## Source

- **Source listing:** [Glama](https://glama.ai/mcp/servers/qihbgxdh2w)
- **Repository:** <https://github.com/danveil/mcp-security-inspector>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "danveil-mcp-security-inspector"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/danveil-mcp-security-inspector` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/danveil-mcp-security-inspector/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
