Alternatives tomcprobe

Best alternatives to mcprobe in 2026

When you connect an AI agent to a new tool or plugin (an "MCP server"), you're trusting that its description and behavior are exactly what they claim to be. That trust can be abused: a malicious or careless MCP server can smuggle hidden instructions into its tool descriptions to manipulate the AI, or expose file paths and resources it shouldn't. mcprobe is a scanner that inspects an MCP server's tool descriptions, schemas, and resource URIs and flags that kind of problem before you plug it into a live agent. It's a single, dependency-free binary that ships as open source under the MIT license. It detects 18 distinct prompt-injection patterns, checks for "tool shadowing" (where one server's tools silently override another's), flags path-traversal and resource-exposure issues, and can snapshot a server's current state as a baseline to detect configuration drift later. Results can be exported as SARIF for CI/CD pipelines, and it supports stdio, HTTP, and SSE transport types — covering the common ways MCP servers are actually deployed.

Quick comparison of mcprobe alternatives

#ToolBest forPrice
1SemgrepDéveloppeurs
2Grego AIProtocoles DeFi et équipes de smart contracts cherchant un audit de sécurité approfondi, à tout stade (premier audit ou sécurité continue).
3StingraiOrganisations de taille moyenne à grande nécessitant une conformité (SOC 2, ISO 27001, PCI DSS, HIPAA) en finance, santé, tech.
4ComplyJetStartups SaaS en croissance visant une première certification (SOC 2, ISO 27001, GDPR) ou quittant un fournisseur legacy plus cher.
5BreachsenseÉquipes SecOps, réponse à incident, MSSP, fournisseurs de sécurité, pentesters.
6SpyCloudGrandes organisations, équipes sécurité, protection des effectifs, gestion du risque fournisseurs.
7ScanTowerAgences gérant plusieurs sites clients, e-commerçants, propriétaires de sites WordPress, développeurs en pré-lancement.
8KeyLeak DetectorÉquipes de développement web, DevOps et sécurité gérant des pipelines CI/CD.
9promptmapDéveloppeurs et professionnels de la sécurité testant des applications LLM personnalisées.
10KeyHunterChercheurs en sécurité, développeurs auditant leurs propres dépôts, organisations vérifiant les fuites de credentials.
11KeySentryChercheurs en sécurité, développeurs, équipes DevSecOps, threat hunters.
12SecureSlateEntreprises SaaS, santé et tech nécessitant une certification de conformité de niveau entreprise.
#2
Grego AI
Security & Privacy🌐 EN

A security firm that uses AI to hunt for serious bugs in smart contracts and blockchain code — the kind of flaw that, left unfound, can lead to millions of dollars stolen.

#enterprise#ai#security#vulnerability-scanning
grego.ai
📄 Full details →
👥 Target audience

Protocoles DeFi et équipes de smart contracts cherchant un audit de sécurité approfondi, à tout stade (premier audit ou sécurité continue).

🌍 Target countries

Worldwide

🗣️ Available languages
EN
🔄 Alternatives
Trail of BitsOpenZeppelinCertiK
🔗 Visit Grego AI
  • Résultats vérifiables (classements, cas documentés)
  • Approche technique différenciante (agents autonomes + modèle d'invariants)
#3
Stingrai
Security & Privacy🌐 EN

A penetration testing service that mixes AI-driven automated attacks with real, certified human hackers checking the results — so you get the speed of automation without just trusting a machine's word that a vulnerability is real.

#enterprise#security#vulnerability-scanning#app-security
stingrai.io
📄 Full details →
👥 Target audience

Organisations de taille moyenne à grande nécessitant une conformité (SOC 2, ISO 27001, PCI DSS, HIPAA) en finance, santé, tech.

🌍 Target countries

Worldwide

🗣️ Available languages
EN
🔄 Alternatives
General Analysispromptmap
🔗 Visit Stingrai
  • Chaque découverte IA validée par un pentester CREST certifié
  • AutoFix propose un correctif directement en pull request
#4
ComplyJet
Security & Privacy🌐 EN

A service that helps a growing startup get its first security certification (like SOC 2) without hiring a dedicated compliance person — it automates the paperwork and connects you with real auditors, at roughly half what the bigger-name platforms charge.

#privacy#enterprise#security#paid
complyjet.com
📄 Full details →
👥 Target audience

Startups SaaS en croissance visant une première certification (SOC 2, ISO 27001, GDPR) ou quittant un fournisseur legacy plus cher.

🌍 Target countries

Worldwide

🗣️ Available languages
EN
🔄 Alternatives
VantaDrataSecureframeSecureSlate
🔗 Visit ComplyJet
  • ~50% moins cher que les vendeurs legacy
  • 350+ intégrations, réseau d'auditeurs inclus
#5
Breachsense
Security & Privacy🌐 EN

A service that watches the dark corners of the internet — hacker forums, ransomware leak sites, malware logs — for your company's stolen passwords and data, and tells you within minutes if something shows up.

#privacy#monitoring#security#api-first
breachsense.com
📄 Full details →
👥 Target audience

Équipes SecOps, réponse à incident, MSSP, fournisseurs de sécurité, pentesters.

🌍 Target countries

Worldwide

🗣️ Available languages
EN
🔄 Alternatives
FlareSpyCloud
🔗 Visit Breachsense
  • Alertes en quelques minutes, suivi de 100+ groupes ransomware
  • Surveille aussi les identités non-humaines (clés API, OAuth)
#6
SpyCloud
Security & Privacy🌐 EN

An enterprise-scale service that collects stolen login data recovered from the dark web and uses it to automatically fix identity security problems before attackers can exploit them — across employees, customers, and vendors.

#privacy#enterprise#security#api-first
spycloud.com
📄 Full details →
👥 Target audience

Grandes organisations, équipes sécurité, protection des effectifs, gestion du risque fournisseurs.

🌍 Target countries

Worldwide

🗣️ Available languages
EN
🔄 Alternatives
BreachsenseFlare
🔗 Visit SpyCloud
  • Remédiation automatisée à partir de données recapturées
  • Trois lignes de produits dédiées (employés/clients/enquêteurs)
#7
ScanTower
Security & Privacy🌐 EN

A website security checkup you can run without installing anything or touching your server — point it at your site's address and it comes back with a report card grading how exposed you are, from A+ to F.

#monitoring#security#vulnerability-scanning#freemium
scantower.io
📄 Full details →
👥 Target audience

Agences gérant plusieurs sites clients, e-commerçants, propriétaires de sites WordPress, développeurs en pré-lancement.

🌍 Target countries

Worldwide

🗣️ Available languages
EN
🔄 Alternatives
KeyLeak DetectorKeySentrySucuri
🔗 Visit ScanTower
  • 30+ vérifications, captures d'écran par navigateur réel
  • Rapports PDF avec notation A+ à F
#8
KeyLeak Detector
Security & Privacy🌐 EN

A free scanner that catches a mistake almost every web team makes eventually: accidentally leaving a real API key or database password visible in a website's code where anyone can copy it.

#cli-tool#security#vulnerability-scanning#secrets-management#browser-extension
keyleakdetector.com
📄 Full details →
👥 Target audience

Équipes de développement web, DevOps et sécurité gérant des pipelines CI/CD.

🌍 Target countries

Worldwide

🗣️ Available languages
EN
🔄 Alternatives
GitLeaksTruffleHogScanTowerKeySentry
🔗 Visit KeyLeak Detector
  • Valide les clés en direct sur 14+ fournisseurs
  • Détecte aussi les erreurs Supabase/Firebase RLS
#9
promptmap
Security & Privacy🌐 EN

A free tool that automatically tries to trick your own AI chatbot into misbehaving — leaking its instructions, saying something harmful, or ignoring its rules — so you find those weaknesses before a real user does.

#open-source#ai-agents#cli-tool#security#vulnerability-scanning
github.com
📄 Full details →
👥 Target audience

Développeurs et professionnels de la sécurité testant des applications LLM personnalisées.

🌍 Target countries

Worldwide

🗣️ Available languages
EN
🔄 Alternatives
General AnalysisStingrai
🔗 Visit promptmap
  • Gratuit, 50+ règles de test prêtes à l'emploi
  • Mode white-box et black-box
#10
KeyHunter
Security & Privacy🌐 EN

A fast, free command-line tool that searches GitHub for leaked API keys and then actually tests each one to confirm whether it still works — instead of just flagging text that looks like a key.

#open-source#cli-tool#security#vulnerability-scanning#secrets-management
github.com
📄 Full details →
👥 Target audience

Chercheurs en sécurité, développeurs auditant leurs propres dépôts, organisations vérifiant les fuites de credentials.

🌍 Target countries

Worldwide

🗣️ Available languages
EN
🔄 Alternatives
KeySentryGitLeaksTruffleHog
🔗 Visit KeyHunter
  • Vérifie en direct l'activité des clés trouvées
  • Rapide (Rust), scan parallèle avec rotation de tokens
#11
KeySentry
Security & Privacy🌐 EN

A free tool that goes through a GitHub repository looking for accidentally-committed passwords, API keys, and sensitive files — the digital equivalent of checking your pockets before publishing.

#open-source#cli-tool#security#vulnerability-scanning#secrets-management
github.com
📄 Full details →
👥 Target audience

Chercheurs en sécurité, développeurs, équipes DevSecOps, threat hunters.

🌍 Target countries

Worldwide

🗣️ Available languages
EN
🔄 Alternatives
GitLeaksTruffleHogkeyhunter
🔗 Visit KeySentry
  • 25+ formats de clés détectés, regex + entropie
  • Interface web en plus du CLI, zéro installation
#12
SecureSlate
Security & Privacy🌐 EN

A compliance service that pairs you with real, former auditors — not just software — to walk you through getting certified (SOC 2, ISO 27001, HIPAA), with the price agreed upfront so there's no surprise hourly billing.

#privacy#enterprise#security#paid
getsecureslate.com
📄 Full details →
👥 Target audience

Entreprises SaaS, santé et tech nécessitant une certification de conformité de niveau entreprise.

🌍 Target countries

Worldwide

🗣️ Available languages
EN
🔄 Alternatives
ComplyJetVantaDrata
🔗 Visit SecureSlate
  • Tarification fixe connue à l'avance
  • Responsable conformité dédié, ex-auditeur

FAQ about mcprobe alternatives

What is the best alternative to mcprobe in 2026?
Based on our selection, Semgrep is the best alternative to mcprobe in 2026. A fast, open-source, static analysis tool for finding bugs and enforcing code standards at editor, commit, and CI time. Its rules look like the code you already write; no abstract syntax trees or regex wrestling. Supports 17+ languages.. See our full ranking above to compare all options.
Is mcprobe free?
mcprobe is a paid tool. Several alternatives in our selection offer free or freemium versions.
How many alternatives to mcprobe are there?
mySelectas has listed 12 alternatives to mcprobe in the Security & Privacy category. Our selection is updated regularly to include the best options available.