AcademyMCP serversDevelopment

Local security scanner for AI-written JS and TS code

Development and security teams that review code before it reaches production.

  • Recommendedour rating
  • 48gitHub stars
  • Apache-2.0licence
  • 7 days agolast update
claude mcp add codeinspectus -- npx -y codeinspectus
README.md

Loading the file...

What it does

A local security MCP server and CLI that scans JavaScript and TypeScript code, including code written with AI tools. It combines Opengrep, Gitleaks and Trivy, and checks for exposed secrets, Supabase row level security and prompt injection. It runs on your machine and sends no code over the network during scans.

Use cases

  1. 01Check a repository for exposed secrets
  2. 02Review Supabase row level security settings
  3. 03Run a scan, fix the findings and scan again

Questions about
Local security scanner for AI-written JS and TS code.

What is Local security scanner for AI-written JS and TS code used for?

Development and security teams that review code before it reaches production. A local security MCP server and CLI that scans JavaScript and TypeScript code, including code written with AI tools. It combines Opengrep, Gitleaks and Trivy, and checks for exposed secrets, Supabase row level security and prompt injection. It runs on your machine and sends no code over the network during scans.

How do I install Local security scanner for AI-written JS and TS code?

Run this in your terminal: claude mcp add codeinspectus -- npx -y codeinspectus

Is Local security scanner for AI-written JS and TS code open source?

Yes. The code is on GitHub (Synvoya/codeinspectus) under the Apache-2.0 licence.

Is Local security scanner for AI-written JS and TS code safe to use?

It passed our automatic scan for credential theft, hidden instructions and risky install commands. Third party open source software. Sabemos AI does not maintain it. Check the code and permissions before you connect it to company data.