MCP ServerSTDIOOfficialv0.2.0

GhostFree MCP Server

MCP server that scans your repo's dependencies for security vulnerabilities based on published CVEs.

io.github.shane-js/ghostfree

Hosted URL

https://github.com/shane-js/ghostfree#readme

Transport

STDIO

Auth

No auth required

Connect to GhostFree

Hosted endpoint — paste into any MCP client.

https://github.com/shane-js/ghostfree#readme

Environment variables

Configuration this server reads at startup.

  • GHOSTFREE_DIR

    Override the directory where GhostFree stores its data files (accepted-risks.yml, config.yml). Defaults to .ghostfree/ in the scanned repository root.

  • GHOSTFREE_MIN_SEVERITY

    Minimum CVE severity level to surface. One of: CRITICAL, HIGH, MEDIUM (default), LOW.

  • NVD_API_KEYSecret

    Optional NVD API key for higher rate limits when enriching CVE details. Free to request at https://nvd.nist.gov/developers/request-an-api-key.

Resources

Where to find authoritative docs and source for GhostFree.

Try GhostFree with 30+ AI models

Open MCP Agent Studio and connect this server to Claude, GPT, Gemini, DeepSeek and more — no install required.

Open Agent Studio

Related servers

More on MCP Playground