# depguard

> Use this tool when you need to secure your AI coding environment with a comprehensive security server. Depguard solves problems related to vulnerability management, supply-chain attacks, and compliance by providing static code analysis and generating CycloneDX 1.6 SBOMs. It takes in code inputs and outputs detailed security audits and reports, making it ideal for use in development and deployment contexts where security is a top priority.

Canonical page: https://skillsregistry.net/skills/mopanc-depguard  
JSON: https://api.skillsregistry.net/v1/skills/mopanc-depguard

## Description

MCP security server for AI coding agents. 12 tools: pre-install guardian, vulnerability audit, supply-chain attack detection via static code analysis, and CycloneDX 1.6 SBOM generation. Zero runtime dependencies.

## Trust

- **Trust score (0–1):** 0.97
- **Verification tier:** verified
- **Last scanned:** 2026-09-19

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** security
- **Updated:** 2026-09-19

## Source

- **Source listing:** [Glama](https://glama.ai/mcp/servers/o7d0hvt1nf)
- **Repository:** <https://github.com/mopanc/depguard>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "mopanc-depguard"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/mopanc-depguard` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/mopanc-depguard/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
