OSV.dev Security Analyzer
MCP Security Analyst is a Go-based server that integrates with OSV.dev to identify and analyze potential vulnerabilities in codebases. Developed by gleicon, it provides tools for checking dependencies against known vulnerabilities and analyzing code files for security issues, with optional enhanced static analysis through Semgrep integration. The server communicates through the Model Context Protocol, making it compatible with AI tools like Claude and Cursor IDE, enabling developers to receive security insights and recommendations directly within their workflow.
Composite of vulnerability cleanliness, spec conformance, provenance, stability, and usage signals — scanned and weighted by Cognium. Human and agent signals are tracked separately. Last scanned 2026-09-19.
Scan details: Circle-IR · 2026-09-19 · Appeal
View full trust & usage report →Metadata
- Version
- 1.0.0
- Skill type
- atomic
- Execution layer
- mcp-remote
- Category
- security
- Source
- PulseMCP
- Repository
- github.com/gleicon/mcp-osv
- Author type
- human
- Last scanned
- 2026-09-19
- Updated
- 2026-09-19
Use via MCP
Resolve OSV.dev Security Analyzer from your agent
Streamable HTTP transport at https://api.skillsregistry.net/mcp. No auth for read tools. Discovery: .well-known/mcp.json.
One command in your shell — Claude Code wires it up and verifies the connection. Run /mcp in any session to confirm.
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp --scope user for --scope project to commit it to .mcp.json.