
Gorgon Scout
Trigger AI-driven DAST scans on your web app or API from Claude Code or another MCP agent on Windows before release.
Overview
io.github.Gorgon-Cyber/gorgon-scout is an MCP server for the Ship phase that runs AI-driven DAST security scans on web apps and APIs from MCP agents on Windows.
What is this MCP server?
- stdio MCP package via mcpb release v1.0.22 (Windows-focused)
- AI-driven DAST for web applications and APIs from any MCP agent
- Distributed as gorgon-scout.mcpb with published fileSha256
- GitHub source: Gorgon-Cyber/gorgon-scout-mcp
- Commercial Scout product backing at gorgoncyber.com/scout
- Server version 1.0.22
- 1 stdio mcpb package with published fileSha256
- Registry description explicitly targets Windows MCP agents
What problem does it solve?
Solo builders often skip full DAST because spinning up separate security tools breaks the agent-centric ship workflow.
Who is it for?
Windows-based founders shipping SaaS or APIs who want agent-triggered DAST in the same session as code review and launch prep.
Skip if: Linux-only CI-only pipelines with no Windows host, or teams needing full manual red-team engagements instead of automated DAST.
What do I get? / Deliverables
After installing the Scout MCP bundle, your agent can launch and interpret dynamic security scans so issues surface before you ship.
- Agent-invoked DAST scan runs against configured web or API endpoints
- Security findings surfaced inside the MCP agent session
- Locally installed gorgon-scout.mcpb v1.0.22 integration
Recommended MCP Servers
Journey fit
How it compares
DAST MCP integration for agents, not a passive dependency scanner or a Claude skill markdown pack.
Common Questions / FAQ
Who is io.github.Gorgon-Cyber/gorgon-scout for?
It is for developers on Windows who use MCP agents and want to run dynamic security scans against their web apps or APIs without a separate security console.
When should I use io.github.Gorgon-Cyber/gorgon-scout?
Use it in the ship/security step on staging or authorized targets before launch, after features are built and you need exploitable-path validation.
How do I add io.github.Gorgon-Cyber/gorgon-scout to my agent?
Install the mcpb release v1.0.22 from the Gorgon Scout MCP GitHub releases, configure stdio transport in your MCP client, and follow Gorgon Cyber Scout onboarding for scan credentials and targets.