# Security Scanner

> Use this tool when you need to identify security vulnerabilities and exposed secrets in code repositories, solving problems such as detecting sensitive information and dependency issues. It takes in code repositories as input and outputs comprehensive security analysis reports in various formats, including summary, detailed, and JSON. Use it in contexts where proactive security scanning is crucial, such as in AI workflows or CI/CD pipelines, to ensure the security and integrity of your codebase.

Canonical page: https://skillsregistry.net/skills/rupeebw-security-scanner  
JSON: https://api.skillsregistry.net/v1/skills/rupeebw-security-scanner

## Description

Security Scanner MCP server that performs comprehensive security analysis of code repositories by detecting exposed secrets, vulnerabilities, dependency issues, and configuration problems. Built by Rupesh Panwar, the implementation scans for AWS keys, API tokens, private keys, database URLs, and other sensitive information using regex patterns, while also identifying common security vulnerabilities like SQL injection risks, command injection, weak cryptography, and hardcoded credentials. Features both MCP server functionality for Claude Desktop integration and a standalone CLI tool, with support for multiple output formats (summary, detailed, JSON) and customizable scan categories, making it valuable for developers who want proactive security scanning integrated into their AI workflows or CI/CD pipelines.

## Trust

- **Trust score (0–1):** 0.88
- **Verification tier:** verified
- **Last scanned:** 2026-09-28

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** database
- **Updated:** 2026-09-28

## Source

- **Source listing:** [PulseMCP](https://www.pulsemcp.com/servers/rupeebw-security-scanner)
- **Repository:** <https://github.com/rupeedev/security-scanner-mcp>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "rupeebw-security-scanner"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/rupeebw-security-scanner` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/rupeebw-security-scanner/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
