heimdall
About
Scan an MCP server or agent config for injection, exfiltration, and risky capabilities.
Use this server
Add it to your MCP client. The catalogue lists this config verbatim from its source — it does not run, download, or vouch for the server. Review the command before you run it.
Transportstdio (runs a local command)
Claude Code
claude mcp add heimdall -- npx mcp-heimdall-scan
Cursor
If the button doesn't open Cursor, use the JSON below — Cursor accepts the same mcpServers config.
VS Code
code --add-mcp '{"name":"heimdall","command":"npx","args":["mcp-heimdall-scan"]}'
JSON
{
"mcpServers": {
"heimdall": {
"command": "npx",
"args": [
"mcp-heimdall-scan"
]
}
}
}