# Mception

> Use this tool when you need to audit the security of MCP servers and identify potential vulnerabilities such as tool poisoning, RCE, SSRF, and credential exfiltration. It analyzes server tools and behaviors, providing output via stdio JSON-RPC transport to help security teams validate configurations before deployment. Ideal for security auditing and validation use cases, Mception takes MCP server configurations as input and outputs vulnerability reports.

Canonical page: https://skillsregistry.net/skills/mception  
JSON: https://api.skillsregistry.net/v1/skills/mception

## Description

Provides security auditing for other MCP servers by analyzing their tools and behaviors for common vulnerability patterns including tool poisoning, RCE, SSRF, and credential exfiltration. Built with FastMCP and Python, it uses stdio JSON-RPC transport and is installable via pipx. Useful for security teams validating MCP server configurations before deployment.

## Trust

- **Trust score (0–1):** 0.67
- **Verification tier:** scanned
- **Last scanned:** 2026-09-19

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** devops-ci
- **Updated:** 2026-09-19

## Source

- **Source listing:** [PulseMCP](https://www.pulsemcp.com/servers/mception)
- **Repository:** <https://github.com/soufianetahiri/mception>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "mception"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/mception` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/mception/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
