Endor Labs
The Endor Labs MCP server integrates security scanning directly into IDEs like Cursor and Visual Studio Code, enabling real-time vulnerability detection and security analysis as developers write code. Built around the endorctl CLI tool, it provides four core capabilities: dependency vulnerability checking, vulnerability database lookups, resource context retrieval, and comprehensive security scans that detect open source risks, common security issues, and exposed credentials in Git repositories. The implementation supports configurable language-specific scanning, environment variable customization, and selective tool management, making it valuable for shift-left security practices where developers need immediate feedback on security issues during development rather than waiting for CI/CD pipeline results.
Composite of vulnerability cleanliness, spec conformance, provenance, stability, and usage signals — scanned and weighted by Cognium. Human and agent signals are tracked separately.
View full trust & usage report →Metadata
- Version
- 1.0.0
- Skill type
- atomic
- Execution layer
- mcp-remote
- Category
- database
- Source
- PulseMCP
- Author type
- human
- Updated
- 2026-04-25
Use via MCP
Resolve Endor Labs from your agent
Streamable HTTP transport at https://api.skillsregistry.net/mcp. No auth for read tools. Discovery: .well-known/mcp.json.
One command in your shell — Claude Code wires it up and verifies the connection. Run /mcp in any session to confirm.
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp --scope user for --scope project to commit it to .mcp.json.