# Burp Suite

> Use this tool when you need to automate web security testing and vulnerability assessment through AI-driven interactions. It solves problems related to web application security testing, penetration testing, and vulnerability assessment by providing a programmatic interface to Burp Suite's capabilities. The tool accepts AI client inputs and outputs security testing results, making it ideal for security professionals seeking to leverage AI assistance in their workflows.

Canonical page: https://skillsregistry.net/skills/portswigger-burp-suite  
JSON: https://api.skillsregistry.net/v1/skills/portswigger-burp-suite

## Description

Burp Suite MCP Server enables AI clients to interact with Burp Suite's web security testing capabilities through the Model Context Protocol. Developed by PortSwigger, this Kotlin-based extension exposes Burp's functionality as tools that AI assistants can use to send HTTP requests, analyze proxy history, manipulate Burp's configuration, and perform various security testing operations. The server includes automatic installation support for Claude Desktop through a packaged stdio proxy server, making it particularly valuable for security professionals who want to leverage AI assistance for web application security testing, vulnerability assessment, and penetration testing workflows.

## Trust

- **Trust score (0–1):** 1.00
- **Verification tier:** verified
- **Last scanned:** 2026-09-28

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** security
- **Updated:** 2026-09-28

## Source

- **Source listing:** [PulseMCP](https://www.pulsemcp.com/servers/portswigger-burp-suite)
- **Repository:** <https://github.com/portswigger/mcp-server>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "portswigger-burp-suite"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/portswigger-burp-suite` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/portswigger-burp-suite/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
