Connected MCP Pentest

Authorized security testing of an MCP server ALREADY CONNECTED to your agent via mcp.json / settings (Claude Code, Cursor, Codex) — remote or local, any hosting. Tests the server IN-PLACE through the agent's own MCP tool calls: no cloning, no re-hosting, no raw endpoint URL or token needed. Covers tool inventory, per-tool authz reasoning, tenant/project tampering, IDOR, tool poisoning, consent gates, and input handling. Safe-by-default, read-only, writes human-gated. Use when the user says "test the MCP in my mcp.json" or points you at a connected MCP.

rwcod 1fe1640 12.2 KB Updated

File contents

rwcod/mcp-remote-oauth-pentest-kit/tree/main/skills/connected-mcp-pentest commit 1fe1640ce7

Frequently asked questions

npx skillmds@latest add rwcod/connected-mcp-pentest