Java Sink Tracer
Analyzes Java applications for security vulnerabilities by tracing data flow through parsed code to identify potential SQL injecti
Built by Zacarx, this server provides Java security vulnerability analysis capabilities through automated sink tracing and code extraction. It integrates javalang for Java AST parsing and includes configurable vulnerability detection rules for identifying potential security sinks like SQL injection points, XSS vulnerabilities, and other common Java security issues by tracing data flow through parsed Java code. The server is valuable for security audits, code reviews, and automated vulnerability assessment workflows in Java development environments.
Source
Repository: https://github.com/zacarx/javasinktracer_mcp
Maintain Java Sink Tracer?
Let people know it's listed here — add the badge (live metrics, light/dark aware) or a plain link to your README or docs.
[Java Sink Tracer on getagentictools](https://getagentictools.com/mcp/zacarx-javasinktracer-mcp?ref=badge)