MCPwner
Secure static code analysis through CodeQL integration with automated workspace creation from GitHub repositories.
MCPwner is a comprehensive MCP server for security researchers that consolidates static code analysis, secret detection, and vulnerability scanning. It provides integrated access to multiple SAST tools including CodeQL, Psalm, Gosec, Bandit, Semgrep, Brakeman, and PMD, with automated workspace creation from GitHub repositories and language detection. All analysis runs in isolated Docker containers.
Source
Repository: https://github.com/pigyon/mcpwner
Maintain MCPwner?
Let people know it's listed here — add the badge (live metrics, light/dark aware) or a plain link to your README or docs.
[MCPwner on getagentictools](https://getagentictools.com/mcp/pigyon-mcpwner?ref=badge) npx agentictools info mcp/pigyon-mcpwner The second line is the CLI lookup for this page — handy in READMEs and docs.