Skip to main content
AllMCPs
BrowseBestCategoriesStackCompareToolsGuidesBlog
Log in Submit MCP

Stay in the loop

Get new MCP servers and top picks in your inbox.

AllMCPs

The open directory for discovering and installing Model Context Protocol servers.

AllMCPs on GitHub (opens in a new tab)
Launched onTiny Startupstinystartups.com
Explore
  • Browse servers
  • Best MCP servers
  • Categories
  • MCP clients
  • Agent prompts
  • Stack Builder
  • Compare servers
  • Random discovery New
  • Submit a server
  • Pricing & Boost Boost
Learn
  • Guides hub
  • What is MCP?
  • Install guide
  • Build an MCP server
  • Deploy an MCP server
  • Security guide
  • Troubleshooting
  • MCP for SEO & AEO
  • Protocol versioning
  • Blog & updates
Tools
  • All developer tools
  • Config generator
  • Config validator
  • Config auditor
  • MCP playground
  • Token calculator
  • OpenAPI → MCP
  • Badge generator
For agents
  • REST API docs
  • Trust & traffic Live
  • Remote MCP server SSE ↗ (opens in a new tab)
  • llms.txt ↗ (opens in a new tab)
  • Catalog JSON ↗ (opens in a new tab)
Company
  • About
  • Advertise Sponsor
  • Contact
  • GitHub ↗ (opens in a new tab)
  • Terms
  • Privacy
AllMCPs VerifiedAllMCPs VerifiedFeatured on Nick LaunchesFeatured on Nick LaunchesLaunch Llama NewsletterLaunch Llama NewsletterVerified DR - allmcps.comVerified DR - allmcps.comFeatured on SaaSGrowFeatured on SaaSGrowFeatured on Twelve ToolsFeatured on Twelve ToolsFeatured on Saaspa.geFeatured on Saaspa.geFeatured on Findly.toolsFeatured on Findly.toolsFeatured on Startup FameFeatured on Startup FameFeatured on LaunchKiwiFeatured on LaunchKiwiFeatured on ScrollLaunchFeatured on ScrollLaunchFeatured on DailyPingsFeatured on DailyPingsFazier badgeFazier badgeFeatured on NewTool.siteFeatured on NewTool.siteFeatured on saasfame.comFeatured on saasfame.comDR Checker - Domain RatingDR Checker - Domain RatingListed on Turbo0Listed on Turbo0Launched on LaunchBoard - Product Launch PlatformLaunched on LaunchBoard - Product Launch PlatformList on SimilarlabsList on Similarlabshttps://codetrendy.comhttps://codetrendy.comListed on DevTool.ioFeatured on BuildlistFeatured on BuildlistLaunched on Tiny StartupsFeatured on ShowMeBestAIFeatured on ShowMeBestAIFind us on LaunchZoneFind us on LaunchZoneAllMCPs VerifiedAllMCPs VerifiedFeatured on Nick LaunchesFeatured on Nick LaunchesLaunch Llama NewsletterLaunch Llama NewsletterVerified DR - allmcps.comVerified DR - allmcps.comFeatured on SaaSGrowFeatured on SaaSGrowFeatured on Twelve ToolsFeatured on Twelve ToolsFeatured on Saaspa.geFeatured on Saaspa.geFeatured on Findly.toolsFeatured on Findly.toolsFeatured on Startup FameFeatured on Startup FameFeatured on LaunchKiwiFeatured on LaunchKiwiFeatured on ScrollLaunchFeatured on ScrollLaunchFeatured on DailyPingsFeatured on DailyPingsFazier badgeFazier badgeFeatured on NewTool.siteFeatured on NewTool.siteFeatured on saasfame.comFeatured on saasfame.comDR Checker - Domain RatingDR Checker - Domain RatingListed on Turbo0Listed on Turbo0Launched on LaunchBoard - Product Launch PlatformLaunched on LaunchBoard - Product Launch PlatformList on SimilarlabsList on Similarlabshttps://codetrendy.comhttps://codetrendy.comListed on DevTool.ioFeatured on BuildlistFeatured on BuildlistLaunched on Tiny StartupsFeatured on ShowMeBestAIFeatured on ShowMeBestAIFind us on LaunchZoneFind us on LaunchZone
© 2026 Jackalope Digital LLC. All rights reserved.
  1. Home
  2. Browse
  3. Sast MCP Server
  4. vs Guardvibe
Side-by-Side Model Context Protocol Comparison

Sast MCP Server vs Guardvibe

In-depth architectural comparison of the Sast MCP Server and Guardvibe MCP servers. Compare execution transports, security boundaries, tool capabilities, quality scores, and ready-to-paste client installation snippets for Claude, Cursor, Windsurf, and VS Code.

At a Glance & Executive Verdict

Sast MCP Server
Security · Local stdio
Quality: 56/100 (Good) | Auth: API Key required
Guardvibe
Security · Local stdio
Quality: 63/100 (Good) | Auth: No auth required
Verdict Summary: Choose Sast MCP Server if you need specialized Security tools running via a local process. Choose Guardvibe if your workspace requires Security integration with local subprocess execution. Both servers can be configured concurrently in your client's mcpServers manifest.

Which MCP Server Should You Choose?

Sast MCP Server logo

Choose Sast MCP Server when:

  • You need dedicated capabilities in the Security domain.
  • You prefer local stdio subprocess transport architecture.
  • Your security boundary fits: API Key required (Free / Open Source).
  • You have access to required keys: DEFECTDOJO_URL, GITHUB_TOKEN, JIRA_URL, JIRA_EMAIL, JIRA_API_TOKEN.
  • Primary tools included: scan_vulnerabilities, scan_all, scan_git_history.
Explore Sast MCP Server Details
Guardvibe logo

Choose Guardvibe when:

  • You need dedicated capabilities in the Security domain.
  • You prefer local stdio subprocess transport architecture.
  • Your security boundary fits: No auth required (Free / Open Source).
  • Primary tools included: check_code, check_project, scan_directory.
Explore Guardvibe Details

Feature & Specification Comparison

Specification
Sast MCP Server logo
Sast MCP Server
Skyrxin
Security
Guardvibe logo
Guardvibe
goklab
Security
SummarySAST/DAST server exposing 11 security scanners (Bandit, Semgrep, Trivy, CodeQL, Checkov, Gitleaks, OSV-Scanner, Grype, OWASP ZAP, and more) with closed-loop remediation (scan→patch→re-scan→verify), SARIF/SBOM/VEX export, compliance reporting, and CI integrations (GitHub Advanced Security, DefectDojo, Slack, Jira).Security MCP for vibe coding with 330 rules and 29 tools. Purpose-built for AI-generated code — scans Next.js, Supabase, Clerk, Stripe, Prisma, Hono, GraphQL, and 25+ modules. Cross-file taint analysis, host security audit, auto-fix, SARIF export, pre-commit hook, and CVE version detection. Zero config, runs locally.
Category & Scope

Tools & Capabilities Breakdown

Sast MCP Server Tools (25)

scan_vulnerabilities
Scan a directory for security vulnerabilities using a specific scanner.
scan_all
Run ALL installed scanners in parallel with automatic deduplication. **Recommended for comprehensive security scanning.**
scan_git_history
Scan the entire `.git` history for leaked secrets and credentials using Gitleaks.
run_active_scan
Run a dynamic (DAST) baseline scan with OWASP ZAP by orchestrating a Docker Compose stack.
export_sarif
Export scan results in SARIF 2.1.0 format for CI/CD integration.
list_scanners

Ready-to-Paste Client Configurations

Paste either (or both) of these JSON server blocks into your client config file (e.g. claude_desktop_config.json or ~/.cursor/mcp.json).

Sast MCP Server Configuration
mcpServers (Claude Desktop / Cursor)
{
  "mcpServers": {
    "skyrxin-sast-mcp-server": {
      "command": "uvx",
      "args": [
        "sast-mcp-server"
      ],
      "env": {
        "DEFECTDOJO_URL": "YOUR_DEFECTDOJO_URL_HERE",
        "GITHUB_TOKEN": "YOUR_GITHUB_TOKEN_HERE",
        "JIRA_URL": "YOUR_JIRA_URL_HERE",
        "JIRA_EMAIL": "YOUR_JIRA_EMAIL_HERE",
        "JIRA_API_TOKEN": "YOUR_JIRA_API_TOKEN_HERE"
      }
    }
  }
}
Guardvibe Configuration
mcpServers (Claude Desktop / Cursor)
{
  "mcpServers": {
    "goklab-guardvibe": {
      "command": "npx",
      "args": [
        "-y",
        "guardvibe"
      ]
    }
  }
}

Frequently Asked Questions

Sast MCP Server is categorized under Security and uses a local stdio subprocess. In contrast, Guardvibe belongs to Security using local stdio subprocess. Select Sast MCP Server when you need capabilities focused on security and Guardvibe when you require tools for security.

More alternatives to Sast MCP ServerMore alternatives to GuardvibeSecurity category hubCanonical compare URL

Related MCP Server Comparisons

Popular comparisons with Sast MCP Server

  • Mobb Vibe Shield MCP logoSast MCP Server vs Mobb Vibe Shield MCP
  • Codeinspectus logoSast MCP Server vs Codeinspectus
  • Security Scanner AI MCP logoSast MCP Server vs Security Scanner AI MCP
  • Vulnfeed MCP logoSast MCP Server vs Vulnfeed MCP

Popular comparisons with Guardvibe

Security
Security
Quality signal56/100 (Good)63/100 (Good)
Transport ProtocolLocal Subprocess (stdio)Local Subprocess (stdio)
Auth RequirementAPI Key requiredNo auth required
Pricing ModelFree / Open SourceFree / Open Source
Required Env Vars
DEFECTDOJO_URLGITHUB_TOKENJIRA_URLJIRA_EMAILJIRA_API_TOKEN
None required
Compatible Clients
Claude DesktopCursorWindsurfClineVS Code
Claude DesktopCursorWindsurfClineVS Code
Install path signaluvx · highnpx · high
Engagement & Health 2 views 0 copies 0 upvotes 2 stars 2 views 0 copies 0 upvotes 5 stars
Verified / OfficialCommunity ListingCommunity Listing
Open full listingView Sast MCP Server ListingView Guardvibe Listing
List available scanners, their installation status, and supported languages.
ignore_vulnerability
Suppress a finding from future scans (with audit trail).
unignore_vulnerability
Re-enable a previously suppressed finding.
list_ignored_vulnerabilities
Show all currently suppressed findings for a project.
save_baseline
Run a scan and cache the results as a named baseline for future trend comparison.
compare_baseline
Compare a fresh scan against a saved baseline to highlight new and fixed findings.
upload_to_defectdojo
Import a SARIF export into a DefectDojo engagement. Requires `DEFECTDOJO_URL`
+13 more tools listed on main page

Guardvibe Tools (39)

check_code
Analyze a code snippet for security issues
check_project
Scan multiple files with security scoring (A-F)
scan_directory
Scan a project directory from disk
scan_staged
Pre-commit scan of git-staged files — **diff-aware** (blocks only newly-staged lines; `diff_aware:false` for whole files)
scan_dependencies
Check all dependencies for known CVEs (OSV) — annotates each vulnerable package with **reachability** (is it actually imported in your source?)
scan_secrets
Detect leaked secrets, API keys, tokens
check_dependencies
Check individual packages against OSV
check_package_health
Typosquat detection, maintenance status, adoption metrics
compliance_report
Map security findings to compliance controls (SOC2, PCI-DSS, HIPAA, GDPR, ISO27001, EU AI Act)
export_sarif
SARIF v2.1.0 export for CI/CD integration
get_security_docs
Security best practices and guides
fix_code
Auto-fix suggestions** with concrete patches for AI agents
+27 more tools listed on main page
MCP Shield logoGuardvibe vs MCP Shield
  • Jadx AI MCP logoGuardvibe vs Jadx AI MCP
  • Agentward logoGuardvibe vs Agentward
  • Apktool MCP Server logoGuardvibe vs Apktool MCP Server