MCP Threat Detection
Vet any MCP server before you trust it. MCP Threat Detection is a supply-chain check: it scans an MCP server's code and dependencies and enumerates what the server exposes, then builds a threat model from the results.
Go toQuilrAI consoleAssessmentsRed TeamingMCP Threat Detection
What a scan does
You can give a repository, a live server, or both.
Run a scan
- Open the MCP Threat Detection tab.
- Enter a public repository URL, a live MCP server, or both.
- Tick the acknowledgement checkbox.
- Click Run deep scan.
Recent scans
Completed and in-progress scans are listed under Recent scans, with their findings and coverage. Open a scan to review its findings.
tip
Use MCP Threat Detection before you add a server to the MCP Gateway or approve it for your users. For an agent that already uses MCP tools, follow up with Agentic Red Teaming to test how the agent behaves under attack.