# @squirex.dev/mcp-server

> Use this tool when you need to scan Salesforce Agentforce metadata for security vulnerabilities and integrate SAST rules into AI coding workflows. It solves problems related to identifying OWASP LLM top 10 risks, using 61+ predefined rules to detect potential threats. The tool takes Salesforce metadata as input and outputs vulnerability reports, making it ideal for securing coding workflows and ensuring compliance with security standards.

Canonical page: https://skillsregistry.net/skills/squirex-dev-squirex-mcp  
JSON: https://api.skillsregistry.net/v1/skills/squirex-dev-squirex-mcp

## Description

MCP server that scans Salesforce Agentforce metadata for security vulnerabilities using 61+ SAST rules, integrating into AI coding workflows to guard against OWASP LLM top 10 risks.

## Trust

- **Trust score (0–1):** 0.69
- **Verification tier:** scanned
- **Last scanned:** 2026-09-01

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** ai-ml
- **Updated:** 2026-09-01

## Source

- **Source listing:** [Glama](https://glama.ai/mcp/servers/dq7z74o7qc)
- **Repository:** <https://github.com/SquireX-dev/squirex-mcp>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "squirex-dev-squirex-mcp"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/squirex-dev-squirex-mcp` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/squirex-dev-squirex-mcp/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
