Android Security Analyzer

MCP server for static security analysis of Android source code

Sollte ich dies verwenden

Qualität und Sicherheit

A
Qualität der Beschreibung
93%
Vollständigkeit des Schemas
80%
Qualität der Benennung
90%
Risiko der Vergiftung
100%
Übereinstimmung der Berechtigungen
100%
Einhaltung des Protokolls
100%

Befunde (1)

  • LOWTool 'health' description lacks action verbin health

Basierend auf einer automatisierten Analyse der Tool-Definitionen und der Einhaltung des Protokolls.

Kontextkosten

~466Tokens (Tool-Definitionen)
~973 BTypische Antwortgröße
Minimale Auswirkung auf die Aufmerksamkeit (0.36% von 128k Kontext)

Dies ist die ungefähre Anzahl der Tokens, die jedes Mal verbraucht werden, wenn die Tools des Servers in den Kontext eines Modells geladen werden. Höhere Werte verringern die Aufmerksamkeit, die für andere Aufgaben verfügbar ist.

Installieren

Installation mit einem Klick

Fügen Sie dies Ihrer Datei `claude_desktop_config.json` hinzu:

{
  "mcpServers": {
    "android-security-analyzer": {
      "url": "https://android-security-analyzer.ako-labs.workers.dev/mcp"
    }
  }
}

Remote-Endpunkte

https://android-security-analyzer.ako-labs.workers.dev/mcpstreamable-http

Was es kann

Tool-Inventar

Tools (4)

🟢 Nur lesen🟡 Schreiben🔴 Löschen⚪ Unbekannt
🟢analyze_android_project(projectName, files, options)

Analyzes an Android project's source code for security vulnerabilities. Accepts project files (AndroidManifest.xml, build.gradle, Java/Kotlin sources, XML configs) and returns a structured security report with findings, severity scores, and recommendations.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "projectName": {
      "type": "string",
      "description": "Name of the Android project being analyzed"
    },
    "files": {
      "type": "array",
      "description": "Array of project files to analyze",
      "items": {
        "type": "object",
        "required": [
          "path",
          "content"
        ],
        "properties": {
          "path": {
            "type": "string",
            "description": "Relative file path within the project (e.g., app/src/main/AndroidManifest.xml)"
          },
          "content": {
            "type": "string",
            "description": "File content as text"
          }
        }
      }
    },
    "options": {
      "type": "object",
      "description": "Analysis options",
      "properties": {
        "includeInfoLevel": {
          "type": "boolean",
          "description": "Include informational findings (default: true)"
        },
        "maxFileSizeKb": {
          "type": "number",
          "description": "Maximum file size in KB to process (default: 512)"
        },
        "enableSecretScan": {
          "type": "boolean",
          "description": "Enable secret/credential scanning (default: true)"
        }
      }
    }
  },
  "required": [
    "projectName",
    "files"
  ]
}
🟢list_android_security_checks(category)

Returns the list of all implemented security checks/rules with their IDs, categories, severity levels, and descriptions.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "category": {
      "type": "string",
      "description": "Filter rules by category (manifest, gradle, source, xml-config, secret). Leave empty for all rules.",
      "enum": [
        "manifest",
        "gradle",
        "source",
        "xml-config",
        "secret"
      ]
    }
  }
}
🟢explain_finding(findingId)

Explains a specific security finding by its rule ID. Returns why it is a risk, how to fix it, and false positive considerations.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "findingId": {
      "type": "string",
      "description": "The rule/finding ID (e.g., MAN-001, SRC-003, SEC-002)"
    }
  },
  "required": [
    "findingId"
  ]
}
⚪health

Returns the server health status, version, and rule engine statistics.

Eingabe-Schema

{
  "type": "object",
  "properties": {}
}

Community

Diesen Server bewerten

Nachweis

Aktuelle Beobachtungen

verifiziertVersion nicht aufgezeichnet4 Tools
verifiziertVersion nicht aufgezeichnet4 Tools
verifiziertVersion nicht aufgezeichnet4 Tools