← Back to Claude Tool Reviews

Cisco MCP Scanner

Skill Security Usable

Enterprise-grade MCP server security scanner combining Cisco AI Defense inspect API, YARA rules, and LLM-as-a-judge to detect malicious MCP tools. CLI and REST API modes.

880 starsApache-2.0 (commercial OK)FreeQuick setup
Official tool maintained by Cisco AI Defense.
Fair rating — This tool is functional but has notable gaps. Review the evaluation notes below before deploying.

Major vendor backing (Cisco) gives enterprise credibility. Detects tool poisoning, rug pull attacks, and over-privileged permissions. Customizable YARA rules.

Enterprise security teams scanning MCP server deployments for threats.

Claude Code Claude Cowork Claude Chat

https://github.com/cisco-ai-defense/mcp-scanner

By Cisco AI Defense

How to Get It

Option 1: Claude Desktop App (Code Mode)Click the + button next to the prompt box → PluginsAdd plugin. Search and click Install. Skills work in Claude Code only.
CostFree

Trust Signals Automated Scan

Stars880Contributors22Last updated2026-04-10LicenseApache-2.0 (OK for commercial use)Known CVEsNone found

Data & Access

Data processingPrompts sent to Anthropic API. Enterprise/Team plans exclude training.Connects toCisco AI Defense servers (official integration)

Community Pulse Active

Discussed on Hacker News, Reddit

23 mentions across 2 sources

Reviewer notes

Automated Scan review. These are observations, not a security certification.

Official Cisco AI Defense product. Enterprise-grade.

How to evaluate tools before deploying →

Data shown here comes from public APIs and automated scanning. Reviewer notes reflect one person's experience. This is not a security certification or legal recommendation. Always evaluate tools according to your own organization's policies.

Evaluation

Ease of Use
3/5
Versatility
2/5
Reliability
4/5
Security
5/5
Overall score3.30 / 5.00 UsableEvaluatedApr 2026

← Back to Claude Tool Reviews