๐Ÿ”ง

kali_mcp-mcp-server

๐Ÿ”งMCP Server

PaulGG-Code/kali_mcp-mcp-server

VibeIndex|
What it does
|

Exposes cybersecurity and penetration testing tools via a secure, controlled JSON-based protocol with ephemeral job workspaces and artifact management

Overview

Kali MCP Server is an MCP server that exposes common penetration testing tools (nmap, nikto, sqlmap, gobuster, searchsploit, binwalk, apktool/jadx) through a secure, controlled JSON-based protocol. It provides a reproducible environment for running pentest tooling with input sanitization, ephemeral job workspaces, and artifact management.

Key Features

  • Comprehensive Tool Suite โ€” Exposes nmap, nikto, sqlmap, gobuster, searchsploit, binwalk, and apktool+jadx as structured MCP tools with strict JSON payloads
  • Security Controls โ€” Input sanitization with argument-list execution (no shell interpolation), API key authentication, simple RBAC, and configurable per-user concurrency limits
  • Artifact Management โ€” Per-job ephemeral workspaces with automatic artifact collection and upload to S3/MinIO or local storage, including signed URL generation for downloads
  • Configurable Environment โ€” Dockerized for reproducibility with environment variables controlling job timeout, concurrent limits, artifact TTL, and storage backend

Who is this for?

Security professionals and penetration testers who want to integrate pentest tooling into AI-assisted workflows for educational and internal testing purposes. Useful for teams that need controlled, auditable execution of security scanning tools with proper artifact retention.

remotehosted

Installation

๐Ÿ“‹

Installation Guide Not Available

Check the GitHub README for installation instructions.

View full documentation on GitHub โ†’
889
Last UpdatedNov 30, 2025