MCP Defender – OSS AI Firewall for Protecting MCP in Cursor/Claude etc
MCP Defender – OSS AI Firewall for Protecting MCP in Cursor/Claude etc
Hi HN, MCP Defender is an open source desktop app that automatically proxies your MCP traffic in AI apps like Cursor, Claude, Windsurf and VSCode. It then scans all requests and responses between the apps and the MCP tools they call. If it detects anything malicious, it alerts you and lets you allow or block the tool call. While the threat landscape of MCP is still being actively researched, there are dangerous things that MCP Defender can block today. For example, a developer asks Cursor to fix a Github issue with an attached crash log. However, the Github issue was created by an attacker who included secret instructions buried in the crash log. These instructions tell Cursor to send the developer’s SSH keys to a server the attacker controls. MCP Defender detects these malicious instructions and alerts the developer who otherwise may not be careful in running tool calls. The scanning is currently done via an LLM and checks for things like prompt injection, credential theft (ssh keys, tokens) and arbitrary code execution. You can use an MCP Defender account or provide your own API keys for LLM providers to perform the scanning. Currently we’ve published a beta Mac build and we’ll soon publish builds for Windows and Linux as well. Any feedback would be greatly appreciated. Thanks!
Share cardActual performance
Launch Intel predictions
Analyze your own launch →Incorrect prediction on native model
Similar products
Thredded forums are minimalistic and OSS
Dynmgrm – Operate DynamoDB with GORM (Golang OSS)
We Put Chromium on a Unikernel (OSS Apache 2.0)
My First OSS as a Teen
The Firewall for Humanity.
Stop your Cursor / Windsurf from hallucinating w/ a MCP tool
Send any website components to Cursor or Claude via MCP
sn00p – poc app firewall
Agent Smith Is OSS
Sigh* Taco Bell MCP