GitGuardian
listing.by
Scan code for leaked secrets, manage security incidents and create honeytokens with GitGuardian's detectors.
listing.connect
listing.explain.oauth
listing.note.oauth
listing.share.h
listing.share.p
mcp.tc/i/gitguardianlisting.about
Connects an AI assistant to GitGuardian's secret detection platform. You can scan files for hardcoded credentials using 500+ detectors, list, filter, assign, resolve and tag incidents (including Public Monitoring incidents), generate and list honeytokens, and open pull requests that remediate secrets in monitored repositories.
The hosted server runs at https://mcp.gitguardian.com/mcp for US SaaS and https://mcp.eu1.gitguardian.com/mcp for EU workspaces. Users sign in with OAuth, and the tools exposed depend on the granted scopes. Self-hosted GitGuardian instances can run the open source ggmcp server locally with a personal access token or in Docker.
listing.can
- Scan files and codebases for leaked credentials
- List and filter security incidents
- Assign, resolve and tag incidents
- Get remediation guidance for an incident
- Generate honeytokens and list existing ones
- Open pull requests that remediate secrets in monitored repositories
listing.tools
listing.notools.oauth
listing.prompts
Scan this codebase for any leaked secrets or credentials.
Check if there are any new security incidents assigned to me.
Help me understand this security incident and provide remediation steps.
Generate a new honeytoken for monitoring AWS credential access.
listing.setup.h
listing.setup.oauth
Claude Code
- Run this in a terminal, in your project folder:
claude mcp add --transport http gitguardian https://mcp.gitguardian.com/mcp- Start Claude Code, type
/mcp, pick gitguardian and choose Authenticate. A browser window opens for the GitGuardian sign-in.
Add --scope user to make it available in every project, not just this one.
Claude Desktop
- Open Settings → Connectors and click Add custom connector.
- Name it GitGuardian and paste this URL:
https://mcp.gitguardian.com/mcp- Click Add, then Connect, and sign in when GitGuardian asks.
Claude Desktop's JSON config file only starts local servers. Remote servers go through Connectors, and connectors you add on claude.ai show up here too.
claude.ai
- Open the connector form on claude.ai. This button fills in the name and URL for you:
- Check that the URL reads
https://mcp.gitguardian.com/mcpand click Add. - Click Connect and sign in when GitGuardian asks.
Free plans allow one custom connector. On Team and Enterprise plans an owner adds it under Organization settings → Connectors.
ChatGPT
- On chatgpt.com, open Settings → Security and login and turn on Developer mode.
- Go to
chatgpt.com/pluginsand click + to create an app for a remote MCP server. - Paste
https://mcp.gitguardian.com/mcpas the server URL and choose OAuth. ChatGPT sends you to GitGuardian to sign in.
Developer mode is available on the web for Plus, Pro, Business, Enterprise and Education accounts.
Cursor
Or add it by hand to ~/.cursor/mcp.json (all projects) or .cursor/mcp.json (this project):
{
"mcpServers": {
"gitguardian": {
"url": "https://mcp.gitguardian.com/mcp"
}
}
}Cursor shows Needs login next to the server. Click it to sign in.
VS Code
Install in VS Code a11y.new_tab
Or from a terminal:
code --add-mcp '{"name":"gitguardian","type":"http","url":"https://mcp.gitguardian.com/mcp"}'Or commit it to the repo in .vscode/mcp.json:
{
"servers": {
"gitguardian": {
"type": "http",
"url": "https://mcp.gitguardian.com/mcp"
}
}
}VS Code asks you to sign in the first time the server starts.
Devin Desktop
- Add it to
~/.config/devin/mcp_config.json(macOS and Linux) or%APPDATA%\devin\mcp_config.json(Windows):
{
"mcpServers": {
"gitguardian": {
"serverUrl": "https://mcp.gitguardian.com/mcp"
}
}
}- Refresh the MCP server list in Cascade and sign in when asked.
Devin Desktop is the new name for Windsurf. It reads serverUrl (or url) for remote servers.
Codex
codex mcp add gitguardian --url https://mcp.gitguardian.com/mcp
codex mcp login gitguardianOr edit ~/.codex/config.toml directly:
[mcp_servers.gitguardian]
url = "https://mcp.gitguardian.com/mcp"Gemini CLI
gemini mcp add --transport http gitguardian https://mcp.gitguardian.com/mcpThen, inside Gemini CLI, run /mcp auth gitguardian to sign in.
This adds it to the current project. Add -s user to use it everywhere.
Any client
Most clients accept this shape. Some name the URL field differently: serverUrl in Devin Desktop, httpUrl in Gemini CLI's settings file.
{
"mcpServers": {
"gitguardian": {
"type": "http",
"url": "https://mcp.gitguardian.com/mcp"
}
}
}Zed puts servers under context_servers in its settings. Cline needs "type": "streamableHttp", or it assumes SSE.
Client only starts local servers? Bridge it with npx -y mcp-remote https://mcp.gitguardian.com/mcp.
listing.faq
Can I paste mcp.tc/i/gitguardian into my MCP client?
No. mcp.tc links are pages, not server addresses. Connect with https://mcp.gitguardian.com/mcp, so your client talks to GitGuardian directly. The sign-in token only works there anyway. The quick link is for sharing: it opens this page, with setup steps for every client.
Does GitGuardian need an API key or a sign-in?
Yes, you need a GitGuardian account. The first time your client connects, it opens GitGuardian's sign-in page. The token goes straight to the server's own URL, never through mcp.tc.
Is GitGuardian a remote or a local server?
Remote. GitGuardian hosts it at https://mcp.gitguardian.com/mcp, and it speaks Streamable HTTP. There's nothing to install.
What can GitGuardian do?
You can scan files and codebases for leaked credentials, list and filter security incidents and assign, resolve and tag incidents.
Which clients can use it?
Any client that supports remote MCP servers: Claude Code, Claude Desktop, claude.ai, ChatGPT in developer mode, Cursor, VS Code, Devin Desktop, Codex, Gemini CLI, Zed and others. The setup steps cover each one.
Who wrote this page?
mcp.tc's robot read GitGuardian's own metadata (its MCP handshake, tool list and public pages), and an AI model drafted the text from it. A person reviews anything the checks can't confirm. The text can still be wrong, so if you spot a mistake, use Report this listing on this page.
listing.em.h
listing.em.lead listing.em.how
listing.em.badge
[](https://mcp.tc/i/gitguardian)<a href="https://mcp.tc/i/gitguardian"><img src="https://mcp.tc/i/gitguardian/badge.svg" alt="GitGuardian on mcp.tc" height="20"></a>listing.em.badge_note
listing.em.widget
<script src="https://mcp.tc/w/gitguardian.js" async></script>listing.em.widget_note
iframe
<iframe src="https://mcp.tc/embed/gitguardian" title="GitGuardian on mcp.tc" width="420" height="200" loading="lazy" allow="clipboard-write" style="border:0;border-radius:8px;max-width:100%"></iframe>listing.em.iframe_note
listing.disclaimer_checked