Skip to content

Github · GitHub Repository Radar

MCP-Defender MCP-Defender

Desktop app that automatically scans and blocks malicious MCP traffic in AI apps like Cursor, Claude, VS Code and Windsurf.

Stars

257

Forks

42

Watchers: 257

Language

TypeScript

License: GNU Affero General Public License v3.0

Repository Radar Score

35 / 100

Growth

7d
+0
30d
+0
%
0.0%

Not enough metric snapshots yet to chart growth for this repository.

Score breakdown

  • popularity 43
  • growth 0
  • activity 35
  • freshness 100
  • community 52

Need help integrating this stack?

Our team builds with modern open-source stacks. Tell us what you are shipping.

Get a quote →

Shows a black knight in light color mode and a white knight one in dark color mode.

MCP Defender

Automatically protects MCP traffic in AI apps

GitHub License

🛡️ MCP Defender is a desktop app that protects AI apps like Cursor from a variety of attacks.

🚦 All MCP tool call requests and responses from AI apps are automatically proxied through MCP Defender.

🔎 The intercepted data is then checked against a set of signatures.

🔐 If anything harmful is detected, MCP Defender alerts you and asks if you want to allow or block the tool call.

Demos

MCP.Defender.Small.mp4

Quick Start

Download MCP Defender for Mac

Alternatively you can clone the git repo, and run it as follows:

# Install dependencies
npm install

# Start app
npm start

Which apps are automatically protected?

MCP Defender protects Cursor, Claude, Visual Studio Code and Windsurf.

License

MCP Defender is licensed under the AGPL-3.0 license. For more details, see the LICENSE.

Created: May 28, 2025

Last push: Jun 5, 2026

Default branch: main

Latest release: v1.1.2

Languages

Share of the codebase by language, based on repository metadata from the host.

  • TypeScript 92.9%
  • JavaScript 6.4%
  • CSS 0.6%
  • Shell 0.0%
  • HTML 0.0%

Repository Radar analysis

Deterministic insights derived from public metadata and our observations — not personal testing or reviews.

Why this repository is interesting

  • Listed in our discovery index with public GitHub metadata for analysis.

Who should use it

  • Developers working primarily with TypeScript
  • Teams exploring AI tooling, agents, or ML infrastructure
  • Security-minded engineers reviewing tooling options

Potential use cases

  • Reference or evaluate TypeScript open-source approaches in this domain
  • Prototype AI/agent workflows or study reference architectures

Strengths

  • README present in our index
  • Declared license: GNU Affero General Public License v3.0

Limitations / considerations

  • Insights are derived from public metadata and our observations — not a substitute for code review

What to watch

  • Radar Score is modest — dig into activity and docs before committing

Source: GitHub (public metadata) + Repository Radar analysis. We do not claim ownership of third-party repositories.

Ready to ship something that compounds?

Share your roadmap. We’ll come back with scope options, timeline ranges, and who from Shriram IT Ventures should be in the room.

Popular with product teams