Seismograph

What’s gaining stars on GitHub right now

graygnatconsole/mcp-audit-tool

🛡️ Security audit CLI for Model Context Protocol (MCP) servers — scan AI agent configs for tool poisoning, rug pulls, hardcoded secrets, command injection & supply-chain risks. Pure Python, SARIF + CI ready.

SecurityPython#agent-security#agentic-ai#ai-security#cursor#llm-guardrails
3.7 Early signal Magnitude out of 10 — how fast interest is growing, not a quality score. Star growth looks organic. Data as of September 27, 2026, 00:58 UTC.
Open on Seismograph Open on GitHub

About the project

A pure-Python CLI that statically audits MCP server configs for hardcoded secrets, unpinned packages, command injection, and tool poisoning before an AI agent runs them.

Useful for

README summarized by DeepSeek V4.1 Flash. Details may be inaccurate.

Why it’s trending

Stars per day

02040September 20, 2026September 27, 2026

Bars are daily stars, the line is the usual pace. Red marks spike days.

Numbers

Total stars
69
Today
0 · ≈ 37 by evening
Forks
1
Issues and pull requests
0
Watchers
0
Language
Python
License
MIT
Created
September 26, 2026
Last push
September 26, 2026

Star trust

Growth looks organic: forks and discussion are in line with active projects, and stars arrive unevenly, the way people give them.

These are heuristics, not a verdict: we judge by the repository’s behavior, not by a list of stargazers.

Spotted in

Share

README badge

Paste it into your README — the badge shows the current magnitude and links to this page.

Seismograph: 3.7
[![Seismograph](https://gitnova.dev/badge/graygnatconsole/mcp-audit-tool.svg?lang=en)](https://gitnova.dev/en/r/graygnatconsole/mcp-audit-tool)

More in this category

  1. 6.2
    Soniavasseur/Wallet-Risk-Scanner

    Multi-chain crypto wallet risk scanner for AML/KYT screening: scores addresses 0–100 using sanctions lists, risky contracts and fund tracing across 6 intelligence providers and 15+ blockchains.

    Early signalSecurityPython+0 stars today, ≈ 155 by evening

  2. 6.0
    derv82/wifit3

    Cross-platform USB Wi-Fi auditor in Python: scans networks, captures WPA handshakes and PMKIDs, attacks WPS and WEP via its own userland drivers without aircrack-ng.

    Early signalSecurityPython+0 stars today, ≈ 174 by evening

  3. 5.6
    openbao/openbao

    OpenBao is an open-source secrets management system for storing, encrypting, and distributing credentials, keys, and certificates, with dynamic secrets and auditing. A community-governed fork of Vault.

    BreakoutSecurityGo+0 stars today, ≈ 175 by evening

  4. 5.2
    Roberto02800/turnstile-token

    A dependency-free Python client and CLI for obtaining Cloudflare Turnstile tokens via the paid Clearance API: it discovers the sitekey on a page, solves the challenge, and returns the token together with the browser…

    Early signalSecurityPython+0 stars today, ≈ 42 by evening

  5. 5.0
    newliver666/apk-reverse

    An Agent Skill for Android APK reverse engineering: unpacking, ad removal, dex patching, repacking, and runtime/server analysis. Loaded by an agent (Claude Code, Codex) while it works.

    BreakoutSecurityPython+0 stars today, ≈ 565 by evening

  6. 4.5
    angusdevgo/Seep-Reverse-Lab

    Agent-native reverse engineering workbench for binaries and CWE-602 client-side authorization auditing: unifies Radare2, JADX, Apktool, Frida and IDA via 23 MCP tools with automatic task routing.

    Early signalSecurityPython+0 stars today, ≈ 60 by evening