Back to Home
d01ki icon

Pentest-mcp

Verified Safe

by d01ki

Overview

Unified penetration testing toolkit for authorized systems, integrated with Claude Desktop.

Installation

Run Command
docker run --rm -i pentest-mcp

Environment Variables

  • OPENAI_API_KEY
  • LOG_LEVEL

Security Notes

The server implements robust command sanitization (using `shlex.quote` and dangerous character checks), human-in-the-loop approval for destructive operations, and masking of sensitive data in logs. It explicitly warns users against unauthorized use and emphasizes Docker isolation for security. The core functionality involves inherently risky penetration testing actions (e.g., SSH brute force, SQL injection tests), so proper authorization and strict ethical considerations are paramount for the user to avoid misuse. The Playwright integration also introduces potential browser-based risks if not used carefully.

Similar Servers

Stats

Interest Score0
Security Score8
Cost ClassMedium
Avg Tokens750
Stars0
Forks0
Last Update2026-01-19

Tags

Penetration TestingSecurityAutomationMCPClaude Desktop