
Pentest MCP
Supports UIby DMontgomery40
Professional penetration testing toolkit for AI agents with Nmap, GoBuster, Nikto, and Hashcat integration.
What it does
Connects AI assistants to a comprehensive suite of professional penetration testing and reconnaissance tools. It allows agents to perform network scanning, vulnerability probing, directory fuzzing, and password cracking directly through the MCP interface.
Tools
nmapScan: Network discovery and security auditing.runJohnTheRipper&runHashcat: High-performance password cracking.gobuster&ffufScan: Directory and file discovery via fuzzing.nikto: Web server vulnerability scanning.subfinderEnum: Subdomain discovery.httpxProbe: Live host probing and metadata extraction.nucleiScan: Template-based vulnerability scanning.trafficCapture: Network packet sniffing.hydraBruteforce: Network login brute-forcing.privEscAudit&extractionSweep: Privilege escalation and data extraction audits.createClientReport: Structured engagement reporting with Scope of Work (SoW) handling.
Installation
Install globally via npm:
npm install -g pentest-mcp
Claude Desktop Configuration:
{
"mcpServers": {
"pentest-mcp": {
"command": "pentest-mcp"
}
}
}
Supported hosts
- claude
- cursor
- codex
Quick install
npm install -g pentest-mcpInformation
- Pricing
- free
- Published
- 4/26/2026






