RFP.ai
v1.0.1
ai.rfp/rfp-ai
Draft cited RFP and security questionnaire answers from your knowledge base, with human review
io.github.dtkmn/mcp-zap-server · v0.8.0
Safe, self-hosted OWASP ZAP operator for guided AI security scans and reports.
MCP ZAP Server 是一个MCP Server,收录自 官方 MCP Registry。支持 streamable-http 传输。本页提供 Cursor、Claude Code 等客户端的安装配置片段。
选择你的平台查看安装方式
{
"mcpServers": {
"mcp-zap-server": {
"command": "docker",
"args": [
"run",
"-i",
"--rm",
"ghcr.io/dtkmn/mcp-zap-server:v0.8.0"
],
"env": {
"ZAP_API_KEY": "<ZAP_API_KEY>",
"MCP_API_KEY": "<MCP_API_KEY>"
}
}
}
}ZAP_API_URL可选Hostname or URL of a separately running OWASP ZAP daemon reachable from this container.
ZAP_API_PORT可选OWASP ZAP API port.
ZAP_API_KEY必填secretAPI key configured on the OWASP ZAP daemon.
MCP_API_KEY必填secretAPI key clients must send as X-API-Key.
MCP_SERVER_TOOLS_SURFACE可选Tool surface to expose. Use guided for the safer default workflow, or expert when clients need raw ZAP tools such as zap_report_read.
MCP_SECURITY_MODE可选MCP_SECURITY_ENABLED可选MCP_SECURITY_ALLOW_PLACEHOLDER_API_KEY可选ZAP_API_URL可选Hostname or URL of a separately running OWASP ZAP daemon reachable from this container.
ZAP_API_PORT可选OWASP ZAP API port.
ZAP_API_KEY必填secretAPI key configured on the OWASP ZAP daemon.
MCP_API_KEY必填secretAPI key clients must send as X-API-Key.
MCP_SERVER_TOOLS_SURFACE可选Tool surface to expose. Use guided for the safer default workflow, or expert when clients need raw ZAP tools such as zap_report_read.
MCP_SECURITY_MODE可选MCP_SECURITY_ENABLED可选MCP_SECURITY_ALLOW_PLACEHOLDER_API_KEY可选v1.0.1
ai.rfp/rfp-ai
Draft cited RFP and security questionnaire answers from your knowledge base, with human review
v1.1.0
io.github.xenarch-ai/xenarch-mcp
Xenarch — x402 MCP server for AI agent payments. Non-custodial, USDC on Base L2.
v1.0.0
com.docimprint/api
AI document intelligence: extract, summarize, claim-check, and notarize with on-chain proofs.
v0.14.0
io.github.blackwell-systems/agent-lsp
Stateful LSP runtime for AI agents — 50+ tools across 30+ languages via MCP.
v0.2.13
io.github.hostinger/hostinger-api-mcp
MCP server for Hostinger API
v0.41.0
io.github.zhitongblog/unterm
The terminal AI agents can drive: spawn panes, run commands, read screens, scrolling screenshots.
{
"id": "io.github.dtkmn/mcp-zap-server",
"type": "mcp-server",
"version": "0.8.0",
"displayName": "MCP ZAP Server",
"description": "Safe, self-hosted OWASP ZAP operator for guided AI security scans and reports.",
"repository": {
"url": "https://github.com/dtkmn/mcp-zap-server",
"source": "github"
},
"homepage": "https://danieltse.org/mcp-zap-server/",
"distribution": {
"packages": [
{
"registryType": "oci",
"identifier": "ghcr.io/dtkmn/mcp-zap-server:v0.8.0",
"runtimeHint": "docker",
"transport": "streamable-http",
"environmentVariables": [
{
"name": "ZAP_API_URL",
"description": "Hostname or URL of a separately running OWASP ZAP daemon reachable from this container."
},
{
"name": "ZAP_API_PORT",
"description": "OWASP ZAP API port."
},
{
"name": "ZAP_API_KEY",
"description": "API key configured on the OWASP ZAP daemon.",
"isRequired": true,
"isSecret": true
},
{
"name": "MCP_API_KEY",
"description": "API key clients must send as X-API-Key.",
"isRequired": true,
"isSecret": true
},
{
"name": "MCP_SERVER_TOOLS_SURFACE",
"description": "Tool surface to expose. Use guided for the safer default workflow, or expert when clients need raw ZAP tools such as zap_report_read."
},
{
"name": "MCP_SECURITY_MODE"
},
{
"name": "MCP_SECURITY_ENABLED"
},
{
"name": "MCP_SECURITY_ALLOW_PLACEHOLDER_API_KEY"
}
]
},
{
"registryType": "oci",
"identifier": "docker.io/dtkmn/mcp-zap-server:v0.8.0",
"runtimeHint": "docker",
"transport": "streamable-http",
"environmentVariables": [
{
"name": "ZAP_API_URL",
"description": "Hostname or URL of a separately running OWASP ZAP daemon reachable from this container."
},
{
"name": "ZAP_API_PORT",
"description": "OWASP ZAP API port."
},
{
"name": "ZAP_API_KEY",
"description": "API key configured on the OWASP ZAP daemon.",
"isRequired": true,
"isSecret": true
},
{
"name": "MCP_API_KEY",
"description": "API key clients must send as X-API-Key.",
"isRequired": true,
"isSecret": true
},
{
"name": "MCP_SERVER_TOOLS_SURFACE",
"description": "Tool surface to expose. Use guided for the safer default workflow, or expert when clients need raw ZAP tools such as zap_report_read."
},
{
"name": "MCP_SECURITY_MODE"
},
{
"name": "MCP_SECURITY_ENABLED"
},
{
"name": "MCP_SECURITY_ALLOW_PLACEHOLDER_API_KEY"
}
]
}
],
"remotes": []
},
"dependencies": [],
"installTargets": [
"claude-code",
"claude-desktop",
"cursor",
"vscode"
],
"keywords": [],
"provenance": {
"origin": "official-mcp-registry",
"originalId": "io.github.dtkmn/mcp-zap-server",
"originalUrl": "https://registry.modelcontextprotocol.io/v0.1/servers/io.github.dtkmn%2Fmcp-zap-server/versions/latest",
"isOfficial": true,
"status": "active"
}
}