sphior-code-mcp
About
Deterministic SAST/SCA findings + fix guidance for your GitHub repos, handed to your AI agent.
Use this server
Add it to your MCP client. The catalogue lists this config verbatim from its source — it does not run, download, or vouch for the server. Review the command before you run it.
Transportstdio (runs a local command)
Env vars
SPHIOR_API_KEY SPHIOR_API_BASEClaude Code
claude mcp add --env SPHIOR_API_KEY= --env SPHIOR_API_BASE= sphior-code-mcp -- npx sphior-code-mcp
Cursor
If the button doesn't open Cursor, use the JSON below — Cursor accepts the same mcpServers config.
VS Code
code --add-mcp '{"name":"sphior-code-mcp","command":"npx","args":["sphior-code-mcp"],"env":{"SPHIOR_API_KEY":"","SPHIOR_API_BASE":""}}'
JSON
{
"mcpServers": {
"sphior-code-mcp": {
"command": "npx",
"args": [
"sphior-code-mcp"
],
"env": {
"SPHIOR_API_KEY": "",
"SPHIOR_API_BASE": ""
}
}
}
}
Environment variables are listed by name only — fill in your own values. Entries never carry secrets.