Back to Home
kp18-cpu icon

Kali_MCP_server

Verified Safe

by kp18-cpu

Overview

Provides an interface for AI assistants to perform web application penetration testing using Kali Linux tools.

Installation

Run Command
docker mcp run pentest

Environment Variables

  • PENTEST_MAX_TIMEOUT
  • PENTEST_ALLOWED_TARGETS

Security Notes

The server implements robust input sanitization to prevent command injection and strong target validation, restricting scans by default to localhost and private IP ranges. It also allows configurable allowed targets. Commands are executed with timeouts and the README states it runs as a non-root user in a container. While these measures significantly mitigate risk, the inherent nature of running penetration testing tools means careful usage and adherence to legal authorization are critical.

Similar Servers

Stats

Interest Score0
Security Score8
Cost ClassMedium
Avg Tokens120
Stars0
Forks0
Last Update2025-11-30

Tags

PentestingSecurity TestingKali LinuxWeb VulnerabilityAI Agent