Loomal

MCP Shield

MCP server by github.com/sophiacave/mcp-shield

Security scanner for MCP servers. SSRF, path traversal, injection, auth, secrets. Grade A-F.

0 starsnpm: @sophiacave/mcp-shield

About MCP Shield

MCP Shield is an MCP (Model Context Protocol) server published by sophiacave in the official MCP registry, listed under Security on Loomal. Security scanner for MCP servers. SSRF, path traversal, injection, auth, secrets. Grade A-F.

It ships as an npm package (@sophiacave/mcp-shield), so any MCP client that can launch a local process can run it.

Development happens in the open at github.com/sophiacave/mcp-shield.

Use MCP Shield with your agent

Claude Code · one command
claude mcp add mcp-shield -- npx -y @sophiacave/mcp-shield
Claude Desktop, Cursor & other MCP clients · config
{
  "mcpServers": {
    "mcp-shield": {
      "command": "npx",
      "args": [
        "-y",
        "@sophiacave/mcp-shield"
      ]
    }
  }
}
npm@sophiacave/mcp-shield

Frequently asked questions

What is MCP Shield?
MCP Shield is an MCP (Model Context Protocol) server by sophiacave in the Security category. Security scanner for MCP servers. SSRF, path traversal, injection, auth, secrets. Grade A-F.
How do I connect MCP Shield to Claude, Cursor, or another MCP client?
Install MCP Shield from its npm package (@sophiacave/mcp-shield) and register it under "mcpServers" in your client's MCP configuration — for example claude_desktop_config.json or Cursor's mcp.json — then restart the client.
Is MCP Shield open source?
Yes — the source code is public at github.com/sophiacave/mcp-shield.
Can AI agents pay to use MCP Shield?
Not yet through Loomal — MCP Shield is listed as a free directory entry. If its maintainer verifies ownership, they can set per-call USDC pricing that agents pay over x402, with settlement on Base.

Listing data from the official MCP registry and GitHub, refreshed periodically. Not affiliated with the maintainer unless claimed. Maintain MCP Shield? Claim this listing free by verifying GitHub ownership, or contact us.