Now liveThe Skillselion MCP - thousands of ranked skills, loaded into your agent mid-task. No install.Get it →
microsoft avatar

Owasp Mcp

  • 35 installs
  • 1.3k repo stars
  • Updated July 27, 2026
  • microsoft/hve-core

owasp-mcp is an agent skill knowledge base for OWASP MCP Top 10 security risks and remediations.

About

The owasp-mcp skill encodes the OWASP MCP Top 10 2025 as structured, machine-readable references for MCP security reviews. The entrypoint links to eleven documents: a vulnerability index and ten risks including token mismanagement, privilege escalation via scope creep, tool poisoning, supply chain attacks, command injection, prompt injection via contextual payloads, insufficient authentication, lack of audit telemetry, shadow MCP servers, and context injection over-sharing. Each reference file aligns with OWASP MCP numbering and includes detection and remediation guidance under CC BY-SA 4.0. Agents query specific numbered references when assessing MCP server configurations, tool permissions, token storage, or telemetry gaps. The skill is a knowledge base entrypoint rather than a deployment workflow, designed for security assessment of MCP integrations in agent systems. Use when evaluating MCP servers, tools, or agent connectors against OWASP MCP Top 10 risks.

  • Entrypoint for OWASP MCP Top 10 2025 structured reference corpus.
  • Eleven documents from vulnerability index through MCP risk 10.
  • Covers token exposure, tool poisoning, command injection, and shadow servers.
  • Detection and remediation guidance per MCP vulnerability category.
  • CC BY-SA 4.0 OWASP Foundation MCP security content.

Owasp Mcp by the numbers

  • 35 all-time installs (skills.sh)
  • +5 installs in the week ending Jun 21, 2026 (Skillselion tracking)
  • Ranked #1,456 of 2,209 Security skills by installs in the Skillselion catalog
  • Security screen: LOW risk (skills.sh audit)
  • Data as of Jul 28, 2026 (Skillselion catalog sync)
At a glance

owasp-mcp capabilities & compatibility

Capabilities
mcp top 10 vulnerability index lookup · token and secret exposure risk references · tool poisoning and injection risk guidance · authentication and audit telemetry risk coverage · shadow server and context injection assessment
Use cases
security audit
From the docs

What owasp-mcp says it does

identify, assess, and remediate MCP security risks.
SKILL.md
01 Token Mismanagement and Secret Exposure
SKILL.md
npx skills add https://github.com/microsoft/hve-core --skill owasp-mcp

Add your badge

Show developers this skill is listed on Skillselion. Paste this into your README.

Listed on Skillselion
Installs35
repo stars1.3k
Security audit3 / 3 scanners passed
Last updatedJuly 27, 2026
Repositorymicrosoft/hve-core

What MCP security risks apply to my agent integration and how do I fix them?

Query OWASP MCP Top 10 references to identify, assess, and remediate Model Context Protocol security risks.

Who is it for?

Security reviewers assessing MCP servers and agent tool integrations against OWASP MCP Top 10.

Skip if: Skip for CI/CD pipeline risks or general web application OWASP Top 10 reviews.

When should I use this skill?

User asks about MCP security risks, OWASP MCP Top 10, tool poisoning, or shadow MCP servers.

What you get

Targeted OWASP MCP risk assessment with detection and remediation from numbered reference docs.

Files

SKILL.mdMarkdownGitHub ↗

OWASP MCP Top 10 — Skill Entry

This SKILL.md is the entrypoint for the MCP Vulnerabilities skill.

The skill encodes the OWASP MCP Top 10 (2025) as structured, machine-readable references that an agent can query to identify, assess, and remediate MCP security risks.

Normative references (MCP Top 10)

1. 00 Vulnerability Index 2. 01 Token Mismanagement and Secret Exposure 3. 02 Privilege Escalation via Scope Creep 4. 03 Tool Poisoning 5. 04 Software Supply Chain Attacks and Dependency Tampering 6. 05 Command Injection and Execution 7. 06 Prompt Injection via Contextual Payloads 8. 07 Insufficient Authentication and Authorization 9. 08 Lack of Audit and Telemetry 10. 09 Shadow MCP Servers 11. 10 Context Injection and Over-Sharing

Skill layout

  • SKILL.md — this file (skill entrypoint).
  • references/ — the MCP Top 10 normative documents.
  • 00-vulnerability-index.md — index of all vulnerability identifiers, severities, and cross-references.
  • 01 through 10 — one document per vulnerability aligned with OWASP MCP numbering.

Related skills

FAQ

What risks does owasp-mcp cover?

Ten OWASP MCP Top 10 risks including token exposure, tool poisoning, command injection, and shadow servers.

How should an agent use owasp-mcp?

Load the relevant numbered reference document from references/ for the MCP vulnerability being assessed.

Is owasp-mcp safe to install?

Review the Security Audits panel on this page before installing in production.

Securityappsecaudit

This week in AI coding

Five minutes, every Monday - the tools, releases and tactics for developers.

unsubscribe anytime.