loading…
Search for a command to run...
loading…
Enables AI coding agents to scan smart contracts and code for vulnerabilities, check against 12 famous-hack patterns, and return public security receipts direct
Enables AI coding agents to scan smart contracts and code for vulnerabilities, check against 12 famous-hack patterns, and return public security receipts directly in the IDE.
Elytra Security as a Model Context Protocol server. Give your AI coding agent (Claude Desktop, Cursor, Cline, Zed) the ability to scan smart contracts and code, check 12 famous-hack patterns, and return public Elytra security receipts — without leaving the IDE.
173 detection rules. ERC-8004 verified agent. x402 pay-per-call in USDC on Base + Solana.
Add to ~/Library/Application Support/Claude/claude_desktop_config.json (macOS) or %APPDATA%\Claude\claude_desktop_config.json (Windows):
{
"mcpServers": {
"elytra": {
"command": "npx",
"args": ["-y", "@elytrasec/mcp@latest"]
}
}
}
Restart Claude Desktop. The 4 Elytra tools appear in the MCP indicator.
Settings → MCP → Add server:
{ "command": "npx", "args": ["-y", "@elytrasec/mcp@latest"] }
Same one-liner — install as a stdio server with the npx command above.
| Tool | What it does |
|---|---|
elytra_scan |
Scan a code snippet for security vulnerabilities |
elytra_scan_address |
Scan a deployed contract by 0x address (Ethereum / Base / Arbitrum / Optimism / Polygon) |
elytra_replay_hacks |
Test code against 12 famous-exploit patterns ($3.04B combined losses): Bybit, Ronin, Euler, Beanstalk, Multichain, Curve, Radiant, zkSync, Cream, Wormhole, Nomad, Mango |
elytra_agent_identity |
Return Elytra's onchain agent card (ERC-8004, pricing, capabilities) |
This MCP server is a thin, read-only client over Elytra's public HTTP API. Specifically:
https://elytrasec.io/r/<id>. The URL is returned to you; you decide whether to share it.ELYTRA_API_KEY — Bearer key for the paid /api/v1/scan endpoint (bypasses x402 micropayment for higher throughput). Contact [email protected].ELYTRA_BASE_URL — Override the default https://elytrasec.io (for self-hosting).All tools above hit Elytra's free public endpoints. For higher rate limits or AI-powered deep review, the underlying API supports x402 pay-per-call in USDC on Base or Solana (1¢ per scan, 2¢ per review).
npx -y @elytrasec/cli scan .MIT
Выполни в терминале:
claude mcp add elytra-security-mcp-server -- npx