V

verglos

Security scanner built for AI-generated code. Score any JS/TS repo in 40s, catch hallucinated packages, and stop coding agents from shipping vulnerabilities. F…

Security
Install Command
npx -y verglos
Claude Desktop Config
{
  "mcpServers": {
    "verglos": {
      "command": "npx",
      "args": [
        "-y",
        "verglos"
      ]
    }
  }
}

verglos is a community MCP server that connects AI assistants like Claude to security scanner built for ai-generated code. score any js/ts repo in 40s, catch hallucinated packages, and stop coding agents from shipping vulnerabilities. f…. It runs locally on your machine, keeping your data private and giving you full control over the connection. Security teams can leverage it to run checks and gather intelligence through natural-language prompts.

About verglos

Overview

Security scanner built for AI-generated code. Score any JS/TS repo in 40s, catch hallucinated packages, and stop coding agents from shipping vulnerabilities. Free forever.

Links

Topics

security, security-scanner, ai-security, sast, secrets-detection, slopsquat, hallucinated-packages, mcp, mcp-server, cursor, claude-code, cli, nextjs, typescript

Who Should Use verglos?

  • 1Run security scans and vulnerability checks from your AI assistant
  • 2Automate compliance checks and audit log reviews
  • 3Integrate threat intelligence feeds into your AI workflow
  • 4Let Claude assist with penetration testing and security research tasks

How to Install verglos

Before you start

You will need Node.js (v18 or later) installed on your machine — download it from nodejs.org if you haven't already.

  1. 1Open a terminal (Terminal on Mac, Command Prompt or PowerShell on Windows).
  2. 2Paste the install command above and press Enter — Node.js will download and run the server automatically.
  3. 3Add the server to your Claude Desktop config file (see the JSON snippet above) and restart Claude.

The Claude Desktop config snippet above can be copied and pasted directly into your claude_desktop_config.json file — no editing required.

How verglos Compares

It runs entirely on your local machine, so no data leaves your environment — important for teams with privacy or compliance requirements.
It is distributed as an npm package, making version management and updates straightforward with a single `npm update` command.

Tags

securitysecurity-scannerai-securitysastsecrets-detectionslopsquathallucinated-packagescursorclaude-codecli

Reviews