Burp Suite
Servidor MCP de PortSwigger
Drive Burp Suite from AI clients through an extension that exposes Burp over MCP, with an SSE endpoint and a bundled stdio proxy.
Instalar Burp Suite
Se ejecuta en tu equipo. Tu cliente lo inicia con este comando:
Los pasos de configuración de abajo muestran dónde va el comando en cada cliente.
Compartir este servidor
Abre esta página, con el comando de instalación y los pasos de configuración.
mcp.tc/i/burp-suiteDescripción
A Burp Suite extension that exposes Burp to MCP clients. Once loaded, an AI assistant can work with Burp from a chat, for example proxy history, Repeater and scanner issues. An optional setting lets the server expose tools that edit Burp configuration.
The extension runs inside Burp and serves SSE at http://127.0.0.1:9876 by default. Host and port are set in the MCP tab. For clients that only support stdio, a packaged proxy jar forwards requests to the SSE server. The extension has an installer that configures Claude Desktop. Java is required. No API key is needed.
Qué puedes hacer
- Connect Burp Suite to MCP clients over SSE or a stdio proxy
- Work with Burp from an AI assistant, including proxy history and Repeater
- Review scanner issues from the chat
- Optionally enable tools that edit Burp configuration
- Install into Claude Desktop with the built-in installer
Herramientas
Los servidores locales muestran sus herramientas cuando están en marcha, y este no publica su lista por adelantado. Tu cliente las muestra después de añadirlo.
Prompts de ejemplo
Show the most recent requests in my Burp proxy history.
Send this request to Repeater and change the id parameter.
List the scanner issues Burp has found so far.
Summarize the high severity findings in this Burp project.
Configuración
Todos los clientes inician Burp Suite en tu equipo con el mismo comando. Elige el tuyo; la página recuerda tu elección.
Claude Code
- Run this in a terminal, in your project folder:
claude mcp add --transport stdio burp-suite -- java -jar mcp-proxy-all.jar --sse-url http://127.0.0.1:9876- Start Claude Code and type
/mcp. burp-suite should show as connected.
Add --scope user to make it available in every project.
Claude Desktop
- Open Settings → Developer → Edit Config. It opens
claude_desktop_config.json. Add:
{
"mcpServers": {
"burp-suite": {
"command": "java",
"args": [
"-jar",
"mcp-proxy-all.jar",
"--sse-url",
"http://127.0.0.1:9876"
]
}
}
}- Save the file and restart Claude Desktop.
The file lives in ~/Library/Application Support/Claude/ on macOS and %APPDATA%\Claude\ on Windows.
Cursor
Añadir a Cursor (se abre en una pestaña nueva)
Or add it by hand to ~/.cursor/mcp.json (all projects) or .cursor/mcp.json (this project):
{
"mcpServers": {
"burp-suite": {
"command": "java",
"args": [
"-jar",
"mcp-proxy-all.jar",
"--sse-url",
"http://127.0.0.1:9876"
]
}
}
}VS Code
Install in VS Code (se abre en una pestaña nueva)
Or from a terminal:
code --add-mcp '{"name":"burp-suite","type":"stdio","command":"java","args":["-jar","mcp-proxy-all.jar","--sse-url","http://127.0.0.1:9876"]}'Or commit it to the repo in .vscode/mcp.json:
{
"servers": {
"burp-suite": {
"type": "stdio",
"command": "java",
"args": [
"-jar",
"mcp-proxy-all.jar",
"--sse-url",
"http://127.0.0.1:9876"
]
}
}
}Devin Desktop
- Add it to
~/.config/devin/mcp_config.json(macOS and Linux) or%APPDATA%\devin\mcp_config.json(Windows):
{
"mcpServers": {
"burp-suite": {
"command": "java",
"args": [
"-jar",
"mcp-proxy-all.jar",
"--sse-url",
"http://127.0.0.1:9876"
]
}
}
}- Refresh the MCP server list in Cascade.
Devin Desktop is the new name for Windsurf.
Codex
codex mcp add burp-suite -- java -jar mcp-proxy-all.jar --sse-url http://127.0.0.1:9876Or edit ~/.codex/config.toml directly:
[mcp_servers.burp-suite]
command = "java"
args = ["-jar", "mcp-proxy-all.jar", "--sse-url", "http://127.0.0.1:9876"]Gemini CLI
gemini mcp add burp-suite java -- -jar mcp-proxy-all.jar --sse-url http://127.0.0.1:9876This adds it to the current project. Add -s user to use it everywhere.
Any client
Most clients that start local servers accept this shape:
{
"mcpServers": {
"burp-suite": {
"command": "java",
"args": [
"-jar",
"mcp-proxy-all.jar",
"--sse-url",
"http://127.0.0.1:9876"
]
}
}
}Zed puts servers under context_servers in its settings, with the same command, args and env fields.
Preguntas frecuentes
Can I paste mcp.tc/i/burp-suite into my MCP client?
No. Burp Suite runs on your own computer, started by your client, so it has no web address to connect to. The quick link is the page to share; the install command is java -jar mcp-proxy-all.jar --sse-url http://127.0.0.1:9876.
Does Burp Suite need an API key?
No. It doesn’t declare any keys or environment variables. It runs with your user account’s permissions, so check what its tools can reach.
Is Burp Suite a remote or a local server?
Local. Your client starts it as a process on your computer with java -jar mcp-proxy-all.jar --sse-url http://127.0.0.1:9876.
What can Burp Suite do?
You can connect Burp Suite to MCP clients over SSE or a stdio proxy, work with Burp from an AI assistant, including proxy history and Repeater y review scanner issues from the chat.
Which clients can use it?
Any client that starts local servers: Claude Code, Claude Desktop, Cursor, VS Code, Devin Desktop, Codex, Gemini CLI, Zed and others. claude.ai and ChatGPT only connect to remote servers.
Who wrote this page?
mcp.tc’s robot read Burp Suite’s public metadata (its package and repository pages), and an AI model drafted the text from it. A person reviews anything the checks can’t confirm. The text can still be wrong, so if you spot a mistake, use Report this listing on this page.
Insertar
Muestra Burp Suite en un README o en tu web. Cada inserción enlaza a esta página, usa el comando de instalación del servidor y no instala cookies. Cómo funcionan las inserciones
Insignia para README
[](https://mcp.tc/i/burp-suite)<a href="https://mcp.tc/i/burp-suite"><img src="https://mcp.tc/i/burp-suite/badge.svg" alt="Burp Suite on mcp.tc" height="20"></a>Sigue el modo claro u oscuro de quien lee. Añade ?theme=light o ?theme=dark para fijarlo, o ?style=compact para mostrar el símbolo sin la palabra.
Tarjeta para web
<script src="https://mcp.tc/w/burp-suite.js" async></script>La tarjeta aparece donde esté la etiqueta. Añade data-theme="dark" o data-size="compact" a la etiqueta para cambiarla. El archivo contiene todo lo que necesita, así que no hace otras solicitudes ni instala cookies.
iframe
<iframe src="https://mcp.tc/embed/burp-suite" title="Burp Suite on mcp.tc" width="420" height="200" loading="lazy" allow="clipboard-write" style="border:0;border-radius:8px;max-width:100%"></iframe>Úsalo en páginas que no permiten scripts. Añade ?theme=light o ?theme=dark a la dirección para fijar los colores.
JSON
La ficha como datos para tus propias páginas y herramientas: nombre, descripción corta, comando de instalación, herramientas y los enlaces «Add to». Cualquier web puede leerla (CORS abierto).
https://mcp.tc/i/burp-suite.jsonmcp.tc no tiene relación con PortSwigger. Esta página se creó a partir de los metadatos públicos de Burp Suite, comprobados por última vez el 3 oct 2026, y un modelo de IA escribió la descripción, así que puede contener errores. Los nombres y marcas pertenecen a sus titulares. ¿Algo no cuadra? Reportar esta ficha.