SimplyScan
Security, SEO and AI-visibility scanner for web apps · free scans and focused checks via MCP.
使うべきか
品質と安全性
検出事項(2)
- LOWcheck_security_headers 内
- LOWcheck_exposed_files 内
ツール定義とプロトコルへの準拠に関する自動分析に基づいています。
コンテキストコスト
これは、サーバーのツールがモデルのコンテキストに読み込まれるたびに消費されるおおよそのトークン数です。数が多いほど、ほかのタスクに使える注意が減ります。
インストール
ワンクリックインストール
これを `claude_desktop_config.json` ファイルに追加してください:
{
"mcpServers": {
"simplyscan": {
"url": "https://api.simplyscan.io/mcp"
}
}
}リモートエンドポイント
https://api.simplyscan.io/mcpstreamable-httpできること
ツール一覧
ツール(7)
🟢scan_website(url)
Run a free SimplyScan security & speed scan of a deployed web app URL. Returns a 0-100 score and findings (exposed secrets, missing Supabase RLS, frontend leaks, speed issues). Best for apps built with Lovable, Bolt, v0, Cursor, Replit, etc.
入力スキーマ
{
"type": "object",
"properties": {
"url": {
"type": "string",
"format": "uri",
"description": "Full https URL to check"
}
},
"required": [
"url"
],
"$schema": "http://json-schema.org/draft-07/schema#"
}🟢check_security_headers(url)
Grade a URL's HTTP security headers (CSP, HSTS, X-Frame-Options, Referrer-Policy, Permissions-Policy, COOP, COEP) A-F.
入力スキーマ
{
"type": "object",
"properties": {
"url": {
"type": "string",
"format": "uri",
"description": "Full https URL to check"
}
},
"required": [
"url"
],
"$schema": "http://json-schema.org/draft-07/schema#"
}🟢check_ai_visibility(url)
AEO check: whether AI answer engines (ChatGPT/GPTBot, Claude, Perplexity, Google-Extended, etc.) can crawl and cite the site, plus llms.txt and structured-data signals.
入力スキーマ
{
"type": "object",
"properties": {
"url": {
"type": "string",
"format": "uri",
"description": "Full https URL to check"
}
},
"required": [
"url"
],
"$schema": "http://json-schema.org/draft-07/schema#"
}🟢check_seo(url)
On-page SEO audit of a URL: title, meta description, H1, canonical, indexability, Open Graph, structured data, image alt coverage, sitemap. Returns an A-F grade.
入力スキーマ
{
"type": "object",
"properties": {
"url": {
"type": "string",
"format": "uri",
"description": "Full https URL to check"
}
},
"required": [
"url"
],
"$schema": "http://json-schema.org/draft-07/schema#"
}🟢check_ssl(domain)
Inspect a domain's SSL/TLS certificate: issuer, expiry, protocol, and flags for expiring/self-signed/mismatched certs.
入力スキーマ
{
"type": "object",
"properties": {
"domain": {
"type": "string",
"minLength": 1,
"description": "Domain, e.g. example.com"
}
},
"required": [
"domain"
],
"$schema": "http://json-schema.org/draft-07/schema#"
}🟢check_email_security(domain)
Check a domain's email authentication: SPF, DKIM (common selectors), and DMARC policy. Flags spoofable domains.
入力スキーマ
{
"type": "object",
"properties": {
"domain": {
"type": "string",
"minLength": 1,
"description": "Domain, e.g. example.com"
}
},
"required": [
"domain"
],
"$schema": "http://json-schema.org/draft-07/schema#"
}🟢check_exposed_files(url)
Probe a site for accidentally exposed high-risk files (.env, .git/config, backups, etc.). Reports HTTP status only, never file contents.
入力スキーマ
{
"type": "object",
"properties": {
"url": {
"type": "string",
"format": "uri",
"description": "Full https URL to check"
}
},
"required": [
"url"
],
"$schema": "http://json-schema.org/draft-07/schema#"
}コミュニティ
エビデンス