A collection of servers which are deliberately vulnerable to learn Pentesting MCP Servers.
-
Updated
Dec 18, 2025 - JavaScript
A collection of servers which are deliberately vulnerable to learn Pentesting MCP Servers.
A practical, community-driven checklist for pentesting MCP servers. Covers traffic analysis, tool-call behavior, namespace abuse, auth flows, and remote server risks. Maintained by Appsecco and licensed for remixing.
A universal MCP client with proxying feature to interact with MCP Servers which support STDIO transport.
Add a description, image, and links to the appsecco topic page so that developers can more easily learn about it.
To associate your repository with the appsecco topic, visit your repo's landing page and select "manage topics."