# Snyk

> Use this tool when you need to identify security vulnerabilities in your codebase, such as scanning GitHub repositories and Snyk projects for potential threats. It solves problems like detecting security issues early in the development cycle and streamlines the process by integrating with the Snyk CLI and supporting authentication through environment variables. The tool accepts GitHub URLs and organization IDs as inputs and provides security scan results as output, making it ideal for developers who want to ensure code security within their conversation interface.

Canonical page: https://skillsregistry.net/skills/sammcj-snyk  
JSON: https://api.skillsregistry.net/v1/skills/sammcj-snyk

## Description

Snyk MCP Server provides a secure code scanning interface for Claude, enabling users to scan GitHub repositories and Snyk projects for security vulnerabilities directly within conversations. The implementation integrates with the Snyk CLI to perform security scans, verify API tokens, and list projects, with multiple configuration options for organization IDs. Built by sammcj, it handles authentication through environment variables and supports scanning repositories via GitHub URLs, making it particularly valuable for developers who need to identify security issues in their code without leaving their conversation interface.

## Trust

- **Trust score (0–1):** 1.00
- **Verification tier:** verified
- **Last scanned:** 2026-09-19

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** version-control
- **Updated:** 2026-09-19

## Source

- **Source listing:** [PulseMCP](https://www.pulsemcp.com/servers/sammcj-snyk)
- **Repository:** <https://github.com/sammcj/mcp-snyk>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "sammcj-snyk"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/sammcj-snyk` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/sammcj-snyk/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
