Sast Mcp Server vs Jadx Ai Mcp — MCP Server Comparison | AllMCPs
Side-by-Side Model Context Protocol Comparison
Sast Mcp Server vs Jadx Ai Mcp
In-depth architectural comparison of the Sast Mcp Server and Jadx Ai Mcp MCP servers. Compare execution transports, security boundaries, tool capabilities, quality scores, and ready-to-paste client installation snippets for Claude, Cursor, Windsurf, and VS Code.
At a Glance & Executive Verdict
Sast Mcp Server
Security · Local stdio
Quality: 53/100 (Good) | Auth: No auth required
Jadx Ai Mcp
Security · Local stdio
Quality: 61/100 (Good) | Auth: No auth required
Verdict Summary: Choose Sast Mcp Server if you need specialized Security tools running via a local process. Choose Jadx Ai Mcp if your workspace requires Security integration with local subprocess execution. Both servers can be configured concurrently in your client's mcpServers manifest.
Which MCP Server Should You Choose?
Choose Sast Mcp Server when:
You need dedicated capabilities in the Security domain.
You prefer local stdio subprocess transport architecture.
Your security boundary fits: No auth required (Free / Open Source).
You need dedicated capabilities in the Security domain.
You prefer local stdio subprocess transport architecture.
Your security boundary fits: No auth required (Free / Open Source).
Primary tools included: Integrated MCP server inside modified JADX-GUI, HTTP access to currently selected class and project code, Real-time AI code review and recommendations.
SAST/DAST server exposing 11 security scanners (Bandit, Semgrep, Trivy, CodeQL, Checkov, Gitleaks, OSV-Scanner, Grype, OWASP ZAP, and more) with closed-loop remediation (scan→patch→re-scan→verify), SARIF/SBOM/VEX export, compliance reporting, and CI integrations (GitHub Advanced Security, DefectDojo, Slack, Jira).
JADX-AI-MCP is a plugin and MCP Server for the JADX decompiler that integrates directly with Model Context Protocol (MCP) to provide live reverse engineering support with LLMs like Claude.
Category & Scope
Tools & Capabilities Breakdown
Sast Mcp Server Tools (25)
scan_vulnerabilities
Scan a directory for security vulnerabilities using a specific scanner.
scan_all
Run ALL installed scanners in parallel with automatic deduplication. **Recommended for comprehensive security scanning.**
scan_git_history
Scan the entire `.git` history for leaked secrets and credentials using Gitleaks.
run_active_scan
Run a dynamic (DAST) baseline scan with OWASP ZAP by orchestrating a Docker Compose stack.
export_sarif
Export scan results in SARIF 2.1.0 format for CI/CD integration.
list_scanners
Ready-to-Paste Client Configurations
Paste either (or both) of these JSON server blocks into your client config file (e.g. claude_desktop_config.json or ~/.cursor/mcp.json).
Sast Mcp Server is categorized under Security and uses a local stdio subprocess. In contrast, Jadx Ai Mcp belongs to Security using local stdio subprocess. Select Sast Mcp Server when you need capabilities focused on security and Jadx Ai Mcp when you require tools for security.