Shipcheck MCP
Run Shipcheck repo risk scans from MCP coding agents.
shipcheck-mcp
MCP server that lets AI coding agents run Shipcheck on local JavaScript and TypeScript repositories.
Shipcheck scans AI-built apps for launch risks such as exposed private-looking env vars, unsigned Stripe webhooks, missing Supabase/Firebase rule evidence, debug routes, missing AI usage guardrails, missing CI, loose dependencies, and thin release docs.
Tool page: https://tatelyman.github.io/tate-web-services/shipcheck.html
Free MCP launch self-check: https://tatelyman.github.io/tate-web-services/mcp-self-check.html
Paid MCP launch check: https://tatelyman.github.io/tate-web-services/mcp-launch-review.html
Official MCP Registry: https://registry.modelcontextprotocol.io/v0/servers?search=shipcheck
Demo repo with GitHub code scanning alerts: https://github.com/TateLyman/shipcheck-demo-ai-app
Install
Run directly with npx:
npx --yes shipcheck-mcp
MCP Config
Add this server to an MCP client that supports stdio servers:
{
"mcpServers": {
"shipcheck": {
"command": "npx",
"args": ["--yes", "--package", "shipcheck-mcp", "shipcheck-mcp"]
}
}
}
Tool
scan_repository
{
"root": ".",
"format": "markdown",
"failOn": "medium",
"strict": true
}
Formats: text, markdown, json, or sarif.
Severities: info, low, medium, or high.
Shipcheck is defensive static analysis, not a penetration test. Run it only on repos you own or are authorized to inspect.
Development
npm install
npm run check
Related Servers
Alpha Vantage MCP Server
sponsorAccess financial market data: realtime & historical stock, ETF, options, forex, crypto, commodities, fundamentals, technical indicators, & more
MCP-Logic
Provides automated reasoning for AI systems using the Prover9 and Mace4 theorem provers.
MCP Cat PSQL
An example of a remote, authentication-free MCP server deployable on Cloudflare Workers.
maximumsats-mcp
Bitcoin Lightning + Nostr Web-of-Trust tools for agents (L402 pay-per-call endpoints)
Domain Checker
Check domain name availability using WHOIS lookups and DNS resolution.
UML-MCP
A diagram generation server supporting multiple UML and other diagram types, with various output formats. It integrates with rendering services like Kroki and PlantUML.
MCP Server + Github OAuth
An MCP server with built-in GitHub OAuth support, designed for deployment on Cloudflare Workers.
Tmux MCP Server
Provides persistent shell execution through tmux sessions.
MCP RAG Server
A Python server providing Retrieval-Augmented Generation (RAG) functionality. It indexes various document formats and requires a PostgreSQL database with pgvector.
MetaTrader 4
Integrate with the MetaTrader 4 trading platform to access trading functions and data via an HTTP bridge and Expert Advisor.
Behavioural Prediction MCP
The Behavioural Prediction MCP Server provides AI-powered tools to analyze wallet behaviour prediction,fraud detection and rug pull prediction.