Official MCP Registry npm v1.0.1

The only AI security
MCP server.

Seven security tools that run natively inside Claude Code, Cursor, and Windsurf. No context switching. No separate dashboard. Security where you already work. Listed on the Official MCP Registry.

npx @arcwall/mcp-server
Claude Code · .claude/mcp.json
{ "mcpServers": { "arcwall": { "command": "npx", "args": ["-y", "@arcwall/mcp-server" ], "env": { "ARCWALL_API_KEY": "aw_..." } } } }
✓ 7 security tools available
✓ Scans run inside your AI session
✓ Results sync to arcwall.io
Works inside Claude Code Cursor Windsurf VS Code Goose
Security Tools

7 tools. Every threat surface covered.

arcwall_scan_mcp
MCP Configuration Scanner

Scans your MCP server configs for prompt injection risks, excessive tool permissions, missing origin validation, and insecure patterns. Catches issues before they reach production.

arcwall_scan_secrets
Secrets Detector

Detects hardcoded API keys, passwords, tokens, and credentials in your codebase. Supports 200+ secret patterns including AWS, GitHub, Stripe, and OpenAI keys.

arcwall_threat_model
STRIDE Threat Modeler

Generates a full STRIDE threat model from a description of your AI system. Returns attack vectors, trust boundary analysis, and compliance control mapping.

arcwall_check_prompt
Prompt Injection Checker

Analyzes system prompts and tool descriptions for injection vulnerabilities, jailbreak vectors, and unsafe instruction patterns.

arcwall_pre_commit
Pre-Commit Security Hook

Runs a fast security check on staged files before committing. Catches secrets and misconfigurations without leaving your terminal.

arcwall_scan_agent
Agent Skills Scanner

Scans agent skill files, CLAUDE.md, and .cursorrules for overprivileged instructions, unsafe patterns, and security anti-patterns.

arcwall_scan_dependencies
AI Dependency Scanner

Checks AI framework dependencies (LangChain, LlamaIndex, anthropic SDK, openai SDK) for known CVEs and vulnerable versions.

Get Started

Install in 60 seconds.

01
Get your API key

Create a free Arcwall account at arcwall.io/register. Your API key is shown after sign up.

Create free account →
02
Add to your AI editor

Add the Arcwall MCP server to your Claude Code, Cursor, or Windsurf config. Paste the snippet below into your MCP settings.

"ARCWALL_API_KEY": "aw_your_key"
03
Run your first scan

Ask Claude Code or Cursor to scan your MCP configuration: “Scan my MCP setup for security issues using Arcwall.” Results sync to your Arcwall dashboard.

Start securing your AI stack.

Free forever. 50 scans per month. No credit card required.