# SAST MCP Server

> Use this tool when you need to identify security vulnerabilities in codebases, as it enables scanning with multiple static analysis tools and streamlines results through filtering and deduplication. It solves problems of manual vulnerability detection and integration with CI/CD pipelines, accepting code inputs and producing detailed vulnerability reports as output. Ideal for use in secure coding practices and DevSecOps contexts.

Canonical page: https://skillsregistry.net/skills/skyrxin-sast-mcp-server  
JSON: https://api.skillsregistry.net/v1/skills/skyrxin-sast-mcp-server

## Description

Enables AI agents to scan code for security vulnerabilities using multiple static analysis tools, with support for filtering, deduplication, and CI/CD integration.

## Trust

- **Trust score (0–1):** 0.07
- **Verification tier:** scanned
- **Last scanned:** 2026-09-28

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** devops-ci
- **Updated:** 2026-09-28

## Source

- **Source listing:** [Glama](https://glama.ai/mcp/servers/wnlgx9p886)
- **Repository:** <https://github.com/Skyrxin/sast-mcp-server>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "skyrxin-sast-mcp-server"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/skyrxin-sast-mcp-server` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/skyrxin-sast-mcp-server/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
