Skip to main content
AllMCPs
BrowseBestCategoriesStackCompareToolsGuidesBlog
Log in Submit MCP

Stay in the loop

Get new MCP servers and top picks in your inbox.

AllMCPs

The open directory for discovering and installing Model Context Protocol servers.

AllMCPs on GitHub (opens in a new tab)
Launched onTiny Startupstinystartups.com
Explore
  • Browse servers
  • Best MCP servers
  • Categories
  • MCP clients
  • Agent prompts
  • Stack Builder
  • Compare servers
  • Random discovery New
  • Submit a server
  • Pricing & Boost Boost
Learn
  • Guides hub
  • What is MCP?
  • Install guide
  • Build an MCP server
  • Deploy an MCP server
  • Security guide
  • Troubleshooting
  • MCP for SEO & AEO
  • Protocol versioning
  • Blog & updates
Tools
  • All developer tools
  • Config generator
  • Config validator
  • Config auditor
  • MCP playground
  • Token calculator
  • OpenAPI โ†’ MCP
  • Badge generator
For agents
  • REST API docs
  • Trust & traffic Live
  • Remote MCP server SSE โ†— (opens in a new tab)
  • llms.txt โ†— (opens in a new tab)
  • Catalog JSON โ†— (opens in a new tab)
Company
  • About
  • Advertise Sponsor
  • Contact
  • GitHub โ†— (opens in a new tab)
  • Terms
  • Privacy
AllMCPs VerifiedAllMCPs VerifiedFeatured on Nick LaunchesFeatured on Nick LaunchesLaunch Llama NewsletterLaunch Llama NewsletterVerified DR - allmcps.comVerified DR - allmcps.comFeatured on SaaSGrowFeatured on SaaSGrowFeatured on Twelve ToolsFeatured on Twelve ToolsFeatured on Saaspa.geFeatured on Saaspa.geFeatured on Findly.toolsFeatured on Findly.toolsFeatured on Startup FameFeatured on Startup FameFeatured on LaunchKiwiFeatured on LaunchKiwiFeatured on ScrollLaunchFeatured on ScrollLaunchFeatured on DailyPingsFeatured on DailyPingsFazier badgeFazier badgeFeatured on NewTool.siteFeatured on NewTool.siteFeatured on saasfame.comFeatured on saasfame.comDR Checker - Domain RatingDR Checker - Domain RatingListed on Turbo0Listed on Turbo0Launched on LaunchBoard - Product Launch PlatformLaunched on LaunchBoard - Product Launch PlatformList on SimilarlabsList on Similarlabshttps://codetrendy.comhttps://codetrendy.comListed on DevTool.ioFeatured on BuildlistFeatured on BuildlistLaunched on Tiny StartupsFeatured on ShowMeBestAIFeatured on ShowMeBestAIFind us on LaunchZoneFind us on LaunchZoneAllMCPs VerifiedAllMCPs VerifiedFeatured on Nick LaunchesFeatured on Nick LaunchesLaunch Llama NewsletterLaunch Llama NewsletterVerified DR - allmcps.comVerified DR - allmcps.comFeatured on SaaSGrowFeatured on SaaSGrowFeatured on Twelve ToolsFeatured on Twelve ToolsFeatured on Saaspa.geFeatured on Saaspa.geFeatured on Findly.toolsFeatured on Findly.toolsFeatured on Startup FameFeatured on Startup FameFeatured on LaunchKiwiFeatured on LaunchKiwiFeatured on ScrollLaunchFeatured on ScrollLaunchFeatured on DailyPingsFeatured on DailyPingsFazier badgeFazier badgeFeatured on NewTool.siteFeatured on NewTool.siteFeatured on saasfame.comFeatured on saasfame.comDR Checker - Domain RatingDR Checker - Domain RatingListed on Turbo0Listed on Turbo0Launched on LaunchBoard - Product Launch PlatformLaunched on LaunchBoard - Product Launch PlatformList on SimilarlabsList on Similarlabshttps://codetrendy.comhttps://codetrendy.comListed on DevTool.ioFeatured on BuildlistFeatured on BuildlistLaunched on Tiny StartupsFeatured on ShowMeBestAIFeatured on ShowMeBestAIFind us on LaunchZoneFind us on LaunchZone
ยฉ 2026 Jackalope Digital LLC. All rights reserved.
  1. Home
  2. ๐Ÿ”’ Security
  3. Shieldapi MCP
Shieldapi MCP logo
Health: ActiveRecent health check succeeded.Last checked 9/7/2026, 2:02:42 AM

Shieldapi MCP

User RatingsBe the first to rate and review this MCP server!
View Repository1 GitHub StarsTotal stargazers on GitHub for the source repository (1 stars).Visit Website
securityprompt-injectionmalware-detectionmcpdeveloper-tools

Security checks for URLs, domains, IPs, emails, passwords, prompts, MCP endpoints, and AI skill files.

Quick Install

Automated & IDE Setup

Copy the AI prompt to install this server into Claude Code, Cursor, or another agent โ€” or use 1-click editor setup below.

Add to CursorAdd to VS Code
Not yet automatically verified

This server is confirmed live โ€” we successfully called its tools/list endpoint directly (see the verified badge above). We haven't yet sandbox-tested the stdio install command below specifically, which is a separate, ongoing check.

Manual Client & Custom JSON ConfigExpand JSON โ–พ

Client Config & Setup

Choose your client or environment
Target File:~/Library/Application Support/Claude/claude_desktop_config.json
claude_desktop_config.json
{
  "mcpServers": {
    "alberthild-shieldapi-mcp": {
      "command": "npx",
      "args": [
        "-y",
        "shieldapi-mcp"
      ]
    }
  }
}

๐Ÿ’ก Paste the JSON block into your client's configuration file under mcpServers, then restart the application.

Install Tool Schemas (10) Directory Badge Claim listing Alternatives๐Ÿ”’ More in Security

Overview

The alberthild/shieldapi-mcp MCP server exposes security intelligence tools for AI agents, including breach lookups, reputation checks, prompt injection detection, skill scanning, and MCP endpoint trust scoring. It runs locally through npm and calls the ShieldAPI service, with a free demo tier that requires no credentials. An optional EVM wallet private key enables x402 USDC payments on Base for unlimited paid requests. Reach for it when an agent needs to screen untrusted content, inspect infrastructure, or assess the risk of connecting to another MCP server.

Use cases

โ€ขScreen untrusted prompts for injection before processing
โ€ขCheck URLs, domains, IPs, and emails for security risk
โ€ขScan AI skills and plugins for supply-chain issues
โ€ขAssess whether an MCP endpoint is safe to connect to
โ€ขLook up exposed passwords and email addresses

Key features

โ€ขPrompt injection detection with pattern evidence
โ€ขStatic AI skill and plugin security scanning
โ€ขURL, domain, IP, email, and password reputation checks
โ€ขCombined target scanning with full_scan
โ€ขMCP endpoint trust scoring
โ€ขFree demo tier and x402 USDC payments

Capabilities & Tool Schemas (10) ~1.2k tokensApproximate context cost of this serverโ€™s tool schemas (~4 chars/token), before any tool is called. Actual usage depends on your client and model.Verified live Verified liveCaptured by calling this serverโ€™s live tools/list endpoint.

Inspect callable tools, capabilities, and parameters exposed to AI agents by Shieldapi MCP.

check_url

Check a URL for malware, phishing, and other threats. Uses URLhaus + heuristic analysis.

check_password

Check if a password hash (SHA-1) has been exposed in known data breaches via HIBP.

check_password_range

Look up a SHA-1 hash prefix in the HIBP k-Anonymity database.

check_domain

Check domain reputation: DNS records, blacklists (Spamhaus, SpamCop, SORBS), SPF/DMARC, SSL.

check_ip

Check IP reputation: blacklists, Tor exit node detection, reverse DNS.

check_email

Check if an email address has been exposed in known data breaches via HIBP.

How Shieldapi MCP works

What alberthild/shieldapi-mcp MCP server does

The alberthild/shieldapi-mcp MCP server provides security-oriented tools for agents handling potentially unsafe content or infrastructure. It can inspect URLs for malware and phishing indicators, evaluate domains and IP addresses using reputation and network signals, and check email addresses or SHA-1 password hashes against breach data associated with Have I Been Pwned. The full_scan tool combines relevant checks for a URL, domain, IP address, or email target.

It also covers AI-specific risks. check_prompt analyzes text for prompt injection across direct instruction overrides, encoding tricks, exfiltration attempts, and indirect injection patterns. scan_skill statically reviews an AI skill or plugin for eight risk categories, including malicious code, credential handling, secrets, suspicious downloads, dependencies, and financial access. check_mcp_trust returns a composite assessment of an MCP endpoint using security, injection, supply-chain, reliability, and on-chain reputation signals.

How it works

The MCP process runs locally and forwards tool requests to the ShieldAPI API. Calls can run in demo mode without a wallet, subject to daily per-endpoint limits. The README describes 10 free calls per day for most endpoints, with lower limits for some operations such as password-prefix checks, full scans, and skill scans.

For paid access, the process uses the x402 payment flow. When the API requests payment, the server can use USDC on Base from the configured EVM wallet and then return the requested security result. Listed paid prices range from $0.001 to $0.02 per request, depending on the endpoint.

Setup and configuration

Install and run the server with:

Terminal
npx shieldapi-mcp

Claude Desktop and Cursor can configure the same command with -y and the package name shieldapi-mcp. Leaving the wallet variable unset selects the free demo mode. Paid usage requires USDC on Base and the wallet's EVM private key.

Supported configuration variables include:

  • SHIELDAPI_URL: API base URL; the documented default is https://shield.vainplex.dev.
  • SHIELDAPI_WALLET_PRIVATE_KEY: EVM private key used for x402 payments. It is optional for demo access.

Tools and capabilities

  • check_url: checks URL malware and phishing risk using URLhaus and heuristic analysis.
  • check_password and check_password_range: perform HIBP breach checks for SHA-1 hashes or hash prefixes.
  • check_domain: examines DNS, blacklists, SPF, DMARC, and SSL signals.
  • check_ip: checks blacklists, Tor exit-node status, and reverse DNS.
  • check_email: checks whether an email address appears in known breaches.
  • full_scan: combines applicable checks for one target.
  • check_prompt: returns an injection verdict, confidence, matched evidence, and decoded content when obfuscation is found.
  • scan_skill: reports a 0โ€“100 risk score and severity-ranked findings with file locations; it does not execute code.
  • check_mcp_trust: produces a 0โ€“100 trust score, tier, and per-signal breakdown for an MCP endpoint.

Limitations and notes

Results depend on the external ShieldAPI service and its underlying data sources. The skill scanner performs static analysis only, so it does not observe behavior by executing the submitted code. Free access is rate-limited by endpoint and does not provide unlimited usage. Paid requests require a funded wallet, USDC on Base, and safe handling of the configured private key. The documented prompt detector is intended for inline screening before processing untrusted text and reports a confidence score rather than a guarantee of correctness.

The alberthild/shieldapi-mcp MCP server is released under the MIT license. Its API base URL, x402 discovery document, and OpenAPI document are documented in the project README for clients that need direct service information.

For agents evaluating whether to connect to another MCP service, the alberthild/shieldapi-mcp MCP server's trust check is the relevant tool: it combines endpoint security, tool-description injection analysis, supply-chain signals, reliability, and AgentProof ERC-8004 reputation into one assessment. That score should be treated as an input to a connection decision, not as proof that an endpoint is safe.

Read the full README โ†’View source on GitHub โ†’

Related MCP Servers

View all in Security View all alternatives
  • Scamverify MCP logoScamverify MCP

    AI-powered scam and threat verification MCP server. Check phone numbers, URLs, text messages, emails, documents, and QR codes against 8M+ threat intelligence records (FTC/FCC complaints, carrier analysis, URLhaus, ThreatFox). Returns risk scores, verdicts, and detailed signals. 10 tools, OAuth 2.1 + API key auth, Streamable HTTP transport.

    ๐Ÿ”’ Security3 views
    Compare vs Scamverify MCP โ†’
  • Arc Gate MCP logoArc Gate MCP

    Runtime governance for MCP tool calls. Blocks prompt injection and capability abuse before tool results reach your agent.

    ๐Ÿ”’ Security5 views
    Compare vs Arc Gate MCP โ†’
  • MCP Shield logoMCP Shield

    Security scanner for MCP servers. Detects backdoors, exfiltration code, obfuscation, dangerous code execution, prompt injection, and supply chain risks before you install. Four tools: scan npm packages, scan local directories, check prompt injection, and audit supply chain trust score. npx @muhannad-hash/mcp-shield

    ๐Ÿ”’ Security2 views
    Compare vs MCP Shield โ†’
  • Shellward logoShellward

    AI Agent Security Middleware & MCP Server with 8-layer defense including prompt injection detection, DLP data flow tracking, command blocking, and PII detection. 7 MCP tools, zero dependencies.

    ๐Ÿ”’ Security2 views
    Compare vs Shellward โ†’

Adoption & maintenance

Factual signals from GitHub, npm, and our automated checks โ€” not a rating.

GitHub stars
1
Stargazers on the source repository.
Last commit
6mo ago
Most recent push to the default branch.
Tools exposed
10
Callable tools this server registers over MCP.
Directory activity
4 views
Config copies, upvotes, and views on AllMCPs.

Reviews

No reviews yet โ€” be the first to share how this listing worked for you.

Frequently Asked Questions about Shieldapi MCP

Run `npx shieldapi-mcp`. Claude Desktop and Cursor configurations use `npx` with `-y shieldapi-mcp`.

AllMCPs Directory Badge

Full Badge Customizer

Showcase your server listing on GitHub or your project documentation. Embed this dynamic SVG badge to highlight official listing status and live engagement.

Badge Style:
Live Dynamic SVG PreviewShieldapi MCP AllMCPs Directory Badge
Markdown (GitHub README)
[![AllMCPs](https://allmcps.com/api/badge/alberthild-shieldapi-mcp?style=directory)](https://allmcps.com/mcp/alberthild-shieldapi-mcp)
HTML Embed
<a href="https://allmcps.com/mcp/alberthild-shieldapi-mcp"><img src="https://allmcps.com/api/badge/alberthild-shieldapi-mcp?style=directory" alt="Shieldapi MCP on AllMCPs" /></a>

Technical Specs & Signals

Category๐Ÿ”’Security
PricingFreemium
More technical detailsExpand โ–พ
TransportSTDIO
RuntimeNode.js
AuthOther
LicenseMIT
ClientsClaude Desktop, Cursor
Last updatedSep 6, 2026
Views4
Unique ViewsTotal visits recorded for this listing page on AllMCPs.
Installs0
Installs & Copy ActionsTotal times users copied install commands or configuration snippets for this server.
GitHub stars1
GitHub Star CountTotal stargazers on GitHub representing community popularity (1 stars).
Last commit6mo ago
Last Repository CommitThe most recent commit or push recorded for this server's GitHub repository.Last commit on Mar 11, 2026
56Quality signal: Good ยท 56/100How this signal is calculated โ–พ
Server availabilityNot measured

Not scored for repo-hosted servers โ€” we can't reach the running server, only its GitHub page. Hosted MCP endpoints are health-checked live.

Verified ownership10/20
Documentation & tools30/30
Adoption & activity1/15
Community engagement1/10

A guidance signal from public completeness & health data โ€” not a user rating. New listings start lower and rise as they add docs, get verified, and grow adoption. Signals we can't observe for a listing are skipped, not counted against it.

Supply-chain signal

No high-severity advisories surfaced by our automated scan.

Critical 0High 0Medium 0Low 0

Scanned 16d ago via OSV.dev ยท shieldapi-mcp (npm)

โ˜… FeaturedAllMCPs Server logo

AllMCPs Server

The official MCP server for AllMCPs.com - submit and manage tools directly from your AI. The open directory for MCP servers. Connect Claude, Cursor, Windsurf, and AI agents to databases, tools, files, and APIs. Explore 10,000+ servers. AllMCPs is the premier, open directory for discovering, evaluating, and installing Model Context Protocol (MCP) servers to equip AI agents and LLMs with real-world superpowers.

Explore Server โ†’

Own this project?

This directory is pre-filled from public sources. Claim via GitHub README, site badge, or DNS TXT to unlock edit access and the Official badge โ€” proof is checked automatically, then reviewed by our team.

Free dofollow backlink: add your website and place the AllMCPs badge on it โ€” no claim needed. We detect it automatically and keep it verified as long as the badge stays live.

Claim & get free dofollow

Share & Embed

Add our SVG badge (dark/light directory styles) or embeddable widget to your site.

Explore more

More in ๐Ÿ”’ Security โ†’Best MCP servers for Security โ†’Alternatives to Shieldapi MCP โ†’Install in Claude DesktopInstall in CursorInstall in VS Code