Free and open-source
50+ automated compliance checks against the official MCP specification. Get a grade, fix what matters, ship with confidence.
The ecosystem
Not a toy protocol. The largest companies in tech are building on it.
MCP is supported natively in every major AI development tool.
What it does
Compliance, performance, monitoring, security, and CI/CD. One tool.
50+ automated checks against the official MCP spec. Handshake, tools, resources, prompts, error handling. A-F grading with category breakdown.
Latency percentiles (p50, p95, p99), concurrent connection testing, throughput measurement. Know exactly how your server performs under load.
Transparent proxy between client and server. Logs every tool call, resource access, and prompt. Alerts on error spikes before your users notice.
Prompt injection detection, auth bypass testing, unsafe tool definition analysis. OWASP Top 10 for agentic applications, fully automated.
GitHub Actions and GitLab CI support. Fail builds on compliance regression. Add a grade badge to your README. Ship every PR with confidence.
Every check is open-source on GitHub. See exactly what your score means. Fork it. Audit it. Contribute. Transparency is how trust is built.
CI/CD ready
Add MCP Doctor to any CI pipeline. Fail the build if your server drops below an A. No more shipping broken protocol implementations.
The problem
Real vulnerabilities. Real breaches. The ecosystem is growing faster than its security practices.
Compromised npm package BCC'd all outgoing emails to attacker-controlled addresses.
SQL injection via support ticket, processed by AI agent. Exfiltrated tokens through the tool chain.
Malicious OAuth endpoint allowed remote code execution on developer machines.
Why trust the grade
We don't make the rules. We automate the ones the MCP spec already defines.
Every check is on GitHub. Fork, audit, contribute.
Tests map to the official MCP specification, governed by the AAIF.
Core compliance scanning is free. Always. No account required.
We build and ship MCP servers ourselves. We test what we know.
Pricing
For every MCP server builder.
For teams in production.
For platform and security teams.
Early access
We're building in the open. Join the waitlist for early access.
0 on the waitlist