MCP server hardening linter — capability declarations, transport, tool descriptions

MCPHARDEN — MCP server hardening linter — capability declarations, transport, tool descriptions

Part of the Cognis Neural Suite by Cognis DigitalCognis Open Collaboration License (COCL) v1.0 · domain: ai-security

PyPICILicense: COCL 1.0

MCP server hardening linter — capability declarations, transport, tool descriptions.

Install

pip install cognis-mcpharden

For local development from this repo:

pip install -e .

Quick start

mcpharden --version
mcpharden scan demos/                          # run against bundled demo
mcpharden scan demos/ --format sarif --out r.sarif --fail-on high
mcpharden mcp                                   # start as MCP server (Cognis.Studio / Claude Desktop / Cursor)

Built-in demo scenarios

Every scenario folder includes a SCENARIO.md describing what it represents and what findings to expect.

  • demos/01-public-mcp-no-auth/ — see SCENARIO.md
  • demos/02-internal-stdio/ — see SCENARIO.md
  • demos/03-shared-multi-server/ — see SCENARIO.md

How it fits the Cognis Neural Suite

This tool is one of 52 in the Cognis Neural Suite. The full suite + launcher lives at:

Every Suite tool ships an MCP server, so Cognis.Studio agents can call them as scoped capabilities.

License

Source-available under the Cognis Open Collaboration License (COCL) v1.0 — free for personal, internal-evaluation, research, and educational use; commercial / production use requires a license ([email protected]). See LICENSE and CONTRIBUTING.md for the collaboration-pull model.

About

Cognis Digital — Wyoming, USA · Making Tomorrow Better Today: Advanced Cybersecurity, AI Innovation, and Blockchain Expertise.

MCP Server · Populars

MCP Server · New

    Cassette-Editor

    Oh My Cassette: Chat Your Raw Clips Into a Finished Cut

    你的随身 AI 剪辑搭档 | Pocket AI co-editor for video montage — AI video editing plugin & MCP server for Claude Code, Codex, Hermes & OpenCode

    Community Cassette-Editor
    trendsmcp-ai

    Trends MCP

    MCP server for live trend data. Query Google Search, YouTube, TikTok, Reddit, Amazon, Wikipedia, News sentiment, Web Traffic, App Downloads, Steam, npm and more. Works with Claude, Cursor, VS Code, GitHub Copilot, ChatGPT, Windsurf, Cline, Raycast and any MCP-compatible.

    Community trendsmcp-ai
    jacob-bd

    Gemini Notebook (formerly Google NotebookLM) CLI & MCP Server

    Programmatic access to Gemini Notebook - via command-line interface (CLI), Model Context Protocol (MCP) server, and AI agent skills.

    Community jacob-bd
    PxyUp

    Fitter — web data for AI agents

    New way for collect information from the API's/Websites

    Community PxyUp
    kayhendriksen

    foehn

    Download MeteoSwiss Open Government Data — weather stations, radar, hail, forecasts and climate series — via Python API, CLI, or MCP server, as DataFrames, Parquet, xarray Datasets or Zarr stores

    Community kayhendriksen