# Burp Suite

> Use this tool when you need to automate web security testing and analysis workflows, leveraging AI assistance for vulnerability discovery and security assessment automation. It integrates Burp Suite's core functionality, including HTTP request/response handling and vulnerability scanning, with AI clients through the Model Context Protocol. This enables security researchers and penetration testers to streamline their workflows and gain intelligent insights into web application security findings.

Canonical page: https://skillsregistry.net/skills/dinosn-burp-suite  
JSON: https://api.skillsregistry.net/v1/skills/dinosn-burp-suite

## Description

This Burp Suite MCP server extension integrates the popular web security testing platform with AI clients, enabling automated security analysis workflows through the Model Context Protocol. Built by Daniel S and Daniel Allen at PortSwigger using Kotlin with Ktor for the web server and the MCP Kotlin SDK, it exposes Burp's core functionality including HTTP request/response handling, vulnerability scanning, crawling, proxy history access, and configuration management through a comprehensive set of tools. The implementation features security controls with user approval dialogs for sensitive operations, automatic installation support for Claude Desktop via a bundled stdio proxy server, and real-time server-sent events communication, making it valuable for security researchers and penetration testers who want to leverage AI assistance for vulnerability discovery, security assessment automation, and intelligent analysis of web application security findings.

## Trust

- **Trust score (0–1):** 0.30
- **Verification tier:** unverified
- **Last scanned:** 2026-09-02

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** browser-automation
- **Updated:** 2026-09-02

## Source

- **Source listing:** [PulseMCP](https://www.pulsemcp.com/servers/dinosn-burp-suite)
- **Repository:** <https://github.com/dinosn/burp-mcp-server>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "dinosn-burp-suite"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/dinosn-burp-suite` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/dinosn-burp-suite/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
