Snyk · Official

Snyk MCP server

Scan code, dependencies, containers and IaC for vulnerabilities from the agent.

Verified publisher namespaceLocalSecurity & code quality
Registry name
io.snyk/mcp
Latest version
1.1304.2 · updated 2026-05-06
Links
Vendor docsSource

Install

Commands are generated from the registry record. Remote servers usually ask you to sign in with OAuth on first use.

Step-by-step guides

Claude Code

claude mcp add snyk -- npx -y snyk

Codex

# ~/.codex/config.toml
[mcp_servers.snyk]
command = "npx"
args = ["-y", "snyk"]

Gemini CLI

gemini mcp add snyk npx -y snyk

Cursor

{
  "mcpServers": {
    "snyk": {
      "command": "npx",
      "args": [
        "-y",
        "snyk"
      ]
    }
  }
}

VS Code (GitHub Copilot)

code --add-mcp '{"name":"snyk","command":"npx","args":["-y","snyk"]}'

Packages

  • npm snyk

More security & code quality

Reviewed Oct 5, 2026. Official means published under Snyk's namespace in the MCP registry. It is not a security audit.