Available on PyPI

How many MCP servers are running in your org right now?

You can't answer that. That's the exposure. MCPShield discovers every unauthorized MCP server across your organization, and what Claude, ChatGPT, and other AI tools can reach, before attackers do.

Instant risk report from your claude_desktop_config.json — no signup, runs entirely in your browser.

Free tier available • Agent is MIT licensed • Privacy-first
MCPShield Dashboard
12 Servers
3 High Risk
8 Agents
postgres-prod CRITICAL
filesystem HIGH
github-api MEDIUM
slack-bot LOW
Critical Risk Detected postgres-prod has DB credentials
Agent Online DESKTOP-ABC reporting
Scroll to explore

Your Employees Are Building
Shadow AI Infrastructure

MCP servers give AI assistants direct access to databases, file systems, and APIs. Security teams have zero visibility.

Invisible Attack Surface

Developers configure MCP servers with database credentials, API keys, and file system access. You can't secure what you can't see.

Real risk AI tools now have direct access to your most sensitive systems

Credential Exposure

MCP configs often contain plaintext passwords, API tokens, and connection strings. One leaked config = full database access.

Common issue MCP configs frequently contain plaintext passwords and API tokens

Compliance Nightmare

AI tools with uncontrolled data access violate SOC 2, HIPAA, GDPR, and the NIST AI RMF. Auditors are starting to ask about AI governance.

Growing concern Auditors are starting to ask about AI governance and data access controls

One Config Away From
Your Customer Data

This is what a single ungoverned MCP server actually exposes — the chain your security team can't currently see.

AI Assistant
Claude, ChatGPT, Cursor
postgres-mcp
MCP server, DSN in config
Production Database
Admin credentials, no scoping
Customer PII
Exfiltrated in one prompt

MCPShield maps every hop of this chain and risk-scores it before an attacker — or a jailbroken prompt — ever walks it.

Complete Visibility.
Zero Blind Spots.

MCPShield scans every machine, discovers every MCP server, and assesses every risk—automatically.

Automatic Discovery

Deploy a lightweight agent that scans for MCP configurations across Claude Desktop, Cursor, VS Code, and custom setups. No manual inventory needed.

  • Cross-platform support (Windows, macOS, Linux)
  • Detects Claude, ChatGPT, Cursor, and custom MCP
  • Privacy-first: Never captures credential values
Terminal
$ mcpshield scan
Scanning for MCP servers...
Found claude_desktop_config.json
Found cline_mcp_settings.json
Discovered 4 MCP servers:
● postgres CRITICAL (85)
● filesystem HIGH (62)
● github MEDIUM (35)
● slack LOW (12)

Intelligent Risk Scoring

Our engine analyzes each MCP server's configuration to calculate a risk score from 0-100. Prioritize what matters most.

  • Detects database access patterns
  • Identifies sensitive environment variables
  • Evaluates file system scope permissions
postgres-prod 85
Database Access +30
Sensitive Credentials +25
Container Execution +20
Network Access +10
Environment Variables:
DATABASE_URL POSTGRES_PASSWORD DB_HOST

On-Demand Scanning

Run scans whenever you need them. Get a complete inventory of every MCP server on a machine in seconds.

  • Run a scan any time with a single command
  • Results uploaded to your dashboard automatically
  • Scheduled scanning & change tracking coming soon
Activity Timeline Live
2m ago
+ New server: openai-api
15m ago
~ Changed: postgres env vars
1h ago
Scheduled scan completed
3h ago
- Removed: test-db

Dashboard Alerts

Critical findings are surfaced immediately in your dashboard so your team can act fast on high-risk configurations.

  • Risk-based severity levels (Critical / High / Medium / Low)
  • Detailed breakdown of each risk factor
  • Slack & webhook integrations coming soon
CRITICAL Just now
High-risk server detected
postgres-prod has database credentials exposed. Risk score: 85/100.

Three Steps to
Complete Visibility

Get your first security insights in under 5 minutes.

01

Deploy Agent

Install our lightweight Python agent on endpoints. One pip command, works everywhere.

pip install mcpshield-agent
02

Configure & Scan

Configure your agent with an API key, then run a scan to discover MCP configs.

mcpshield configure --api-key YOUR_KEY
mcpshield scan
03

Review & Act

See all servers in your dashboard with risk scores. Take action on high-risk configurations.

mcpshield scan --report

See It In Action

Watch MCPShield discover MCP servers in real-time.

MCPShield Demo
Overview
Servers
Alerts 3

Simulates a scan discovering MCP servers

Embed security status
in your docs

Give your team instant visibility into MCP server risk. Embed dynamic risk score badges in your internal wikis, READMEs, or Confluence pages. Badges update in real-time as your security posture changes.

MCPShield postgres-prod Critical 85
MCPShield github-mcp Medium 35
MCPShield slack-mcp Low 12

⚠︎ Badge embed API coming soon — the format will be:

<!-- Coming soon: embed in your internal docs -->
<img src="https://app.mcpshield.app/badge/{server-id}" alt="MCPShield Risk Score" />

<!-- Markdown format -->
![MCPShield Risk](https://app.mcpshield.app/badge/{server-id})

Catch risky configs
before they merge

Drop MCPShield into your pipeline and every pull request that touches an MCP config gets risk-scored automatically, using the same engine as the dashboard. Free and open source, running in under a minute. No signup, no API key, and nothing leaves the runner.

CI GitHub Action

- uses: RunTimeAdmin/mcpshield-action@v1
  with:
    fail-on: high

Statically scores committed mcp.json, cline_mcp_settings.json, and claude_desktop_config.json files, then fails the check on risky servers before they ever reach a developer's machine.

Get it on GitHub Marketplace Free · MIT · Zero dependencies

Deploy in Minutes,
Integrate Everywhere

Get MCPShield running with a single command. Alerts ship today to Slack and any webhook; more package managers and SIEM connectors are on the roadmap.

pip PyPI (All Platforms)

pip install mcpshield-agent

Available now on PyPI. Works on Windows, macOS, and Linux.

Alerting & SIEM

Risk alerts ship today to Slack and any generic webhook, so you can wire MCPShield into PagerDuty, OpsGenie, Teams, or your own automation.

On the roadmap: Homebrew, APT & RPM packages · Splunk (HEC) · Elastic / ELK · Microsoft Sentinel.

Simple, transparent pricing

Start free. Upgrade when your team grows.

Free

$0 /mo

Up to 3 agents and 50 MCP servers. No credit card needed.

  • 3 agents
  • 50 MCP servers
  • Risk scoring + alerts
  • CISA KEV enrichment
  • Or self-host free from source
Get started free
Most popular

Pro

$29 /mo

$290/yr — save two months. Unlimited agents and servers.

  • Unlimited agents
  • Unlimited MCP servers
  • Email alerts for critical risk
  • CISA KEV enrichment
  • Priority support
Start free trial

Enterprise

$149 /mo

For teams with advanced security and compliance needs. Contact us to discuss requirements.

  • Everything in Pro
  • SSO / SAML (roadmap)
  • Audit logs (roadmap)
  • DPA available on request
  • Dedicated support
Contact us

Agent is MIT licensed and open source. Self-host the full platform free from source.

Ready to Secure Your AI Infrastructure?

Start discovering shadow AI agents in your infrastructure today. Free tier included — no credit card required.