Skip to main content
在 Manus 中运行任何 Skill
一键导入

mcp-sentinel

Security monitoring agent for Claude Skills and MCP servers. v2 adds a real-time protection layer (PreToolUse hook) that blocks malicious tool calls — credential exfiltration, known-bad domains like giftshop.club (Postmark MCP incident), reverse shells, curl|bash pipes — BEFORE they execute, with zero LLM cost. v1 static analysis still runs: scans installed skills/MCPs against multiple vulnerability databases (GitHub Advisory DB, vulnerablemcp.info, CVE feeds, mcpscan.ai, Snyk, ClawHub/VirusTotal) and community alerts (Reddit r/ClaudeAI, Discord), maintains a local threat database, performs coherence analysis and update diff detection. Use this skill whenever: the user asks about security of their skills or MCPs, wants to audit installed plugins, enable real-time protection, mentions "vulnerability", "CVE", "malicious skill", "security scan", "threat", "audit", "runtime protection", "block", says "is this skill safe?", asks to check dependencies, or wants ongoing security monitoring. Also trigger proactively

星标164
分支22
更新时间2026年4月18日 00:11
SKILL.md
readonly